Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 'shell' = 'Explorer.exe MUpdate.exe'
- <SYSTEM32>\st\msdarem.dll
- <SYSTEM32>\st\msdaprst.dll
- <SYSTEM32>\st\msdfmap.dll
- <SYSTEM32>\st\msdaremr.dll
- <SYSTEM32>\st\msadds.dll
- <SYSTEM32>\st\msadcs.dll
- <SYSTEM32>\st\msdaprsr.dll
- <SYSTEM32>\st\msaddsr.dll
- <SYSTEM32>\st\msdaosp.dll
- <SYSTEM32>\st\msdaorar.dll
- <SYSTEM32>\st\msdasc.dll
- <SYSTEM32>\st\msdaps.dll
- <SYSTEM32>\st\msdaenum.dll
- <SYSTEM32>\st\msdadc.dll
- <SYSTEM32>\st\msdaora.dll
- <SYSTEM32>\st\msdaer.dll
- <SYSTEM32>\st\msadcor.dll
- <SYSTEM32>\st\msadomd.dll
- <SYSTEM32>\st\msado15.dll
- <SYSTEM32>\st\msadox.dll
- <SYSTEM32>\st\msador15.dll
- <SYSTEM32>\st\spttseng.dll
- <SYSTEM32>\st\spcommon.dll
- <SYSTEM32>\st\msader15.dll
- <SYSTEM32>\st\MDACReadme.htm
- <SYSTEM32>\st\msadcf.dll
- <SYSTEM32>\st\msadcer.dll
- <SYSTEM32>\st\msadco.dll
- <SYSTEM32>\st\msadcfr.dll
- <SYSTEM32>\st\msjro.dll
- <SYSTEM32>\st\msadrh15.dll
- <SYSTEM32>\st\msadce.dll
- <SYSTEM32>\st\directdb.dll
- <SYSTEM32>\st\browsercomps.dll
- <SYSTEM32>\st\hiddenWindow.html
- <SYSTEM32>\st\freebl3.dll
- <SYSTEM32>\st\bookmarks.html
- <SYSTEM32>\st\directionDetector.html
- <SYSTEM32>\st\child.html
- <SYSTEM32>\eCard.zip
- <SYSTEM32>\st\plugins.html
- <SYSTEM32>\st\nss3.dll
- <SYSTEM32>\st\nspr4.dll
- <SYSTEM32>\st\nssdbm3.dll
- <SYSTEM32>\st\nssckbi.dll
- <SYSTEM32>\st\mozalloc.dll
- <SYSTEM32>\st\IA2Marshal.dll
- <SYSTEM32>\st\mozsqlite3.dll
- <SYSTEM32>\st\mozjs.dll
- <SYSTEM32>\st\buildconfig.html
- <SYSTEM32>\st\msxactps.dll
- <SYSTEM32>\st\msdaurl.dll
- <SYSTEM32>\st\oledb32r.dll
- <SYSTEM32>\st\oledb32.dll
- <SYSTEM32>\st\msdasqlr.dll
- <SYSTEM32>\st\msdasql.dll
- <SYSTEM32>\st\msdatt.dll
- <SYSTEM32>\st\msdatl3.dll
- <SYSTEM32>\st\inspector.html
- <SYSTEM32>\st\AccessibleMarshal.dll
- <SYSTEM32>\st\tabview.html
- <SYSTEM32>\st\license.html
- <SYSTEM32>\st\sqlxmlx.dll
- <SYSTEM32>\st\sqloledb.dll
- <SYSTEM32>\st\wab32res.dll
- <SYSTEM32>\st\wab32.dll
- <SYSTEM32>\st\Compare.dll
- <SYSTEM32>\st\changes.txt
- <SYSTEM32>\st\EditCase.dll
- <SYSTEM32>\st\DrawLine.dll
- <SYSTEM32>\st\AutoWrap.dll
- <SYSTEM32>\st\arclite.dll
- <SYSTEM32>\st\colorer.dll
- <SYSTEM32>\st\Brackets.dll
- <SYSTEM32>\st\FtpCmds.txt
- <SYSTEM32>\st\FarFtp.dll
- <SYSTEM32>\st\Notes.txt
- <SYSTEM32>\st\FtpCmds_rus.txt
- <SYSTEM32>\st\esearch.dll
- <SYSTEM32>\st\EMenu.dll
- <SYSTEM32>\st\FileCase.dll
- <SYSTEM32>\st\FARCmds.dll
- <SYSTEM32>\st\Align.dll
- <SYSTEM32>\st\Far.FAQ.txt
- <SYSTEM32>\st\Bug.Report.txt
- <SYSTEM32>\st\Plugins.Review.txt
- <SYSTEM32>\st\Plugins.Install.txt
- <SYSTEM32>\eCard.html
- <SYSTEM32>\MSupdate.html
- <SYSTEM32>\st\Arc.Support.txt
- <SYSTEM32>\MUpdate.exe
- <SYSTEM32>\st\7-ZipFar64.dll
- <SYSTEM32>\st\7-ZipFar.dll
- <SYSTEM32>\st\far7z.txt
- <SYSTEM32>\st\7z.dll
- <SYSTEM32>\st\demangle32.dll
- <SYSTEM32>\st\TechInfo.txt
- <SYSTEM32>\st\FExcept.dll
- <SYSTEM32>\st\ExcDump.dll
- <SYSTEM32>\st\Sweets.htm
- <SYSTEM32>\st\Sunflower.htm
- <SYSTEM32>\st\msconv97.dll
- <SYSTEM32>\st\Technical.htm
- <SYSTEM32>\st\Nature.htm
- <SYSTEM32>\st\Maize.htm
- <SYSTEM32>\st\Pie Charts.htm
- <SYSTEM32>\st\Network Blitz.htm
- <SYSTEM32>\st\mssoap1.dll
- <SYSTEM32>\st\fp4autl.dll
- <SYSTEM32>\st\wisc10.dll
- <SYSTEM32>\st\mssoapr.dll
- <SYSTEM32>\st\msdia80.dll
- <SYSTEM32>\st\msdia100.dll
- <SYSTEM32>\st\vgx.dll
- <SYSTEM32>\st\msdia90.dll
- <SYSTEM32>\st\Leaves.htm
- <SYSTEM32>\st\TmpPanel.dll
- <SYSTEM32>\st\Proclist.dll
- <SYSTEM32>\st\dao360.dll
- <SYSTEM32>\st\WinSCP.dll
- <SYSTEM32>\st\HlfViewer.dll
- <SYSTEM32>\st\Notes_rus.txt
- <SYSTEM32>\st\Network.dll
- <SYSTEM32>\st\MacroView.dll
- <SYSTEM32>\st\Fiesta.htm
- <SYSTEM32>\st\Clear Day.htm
- <SYSTEM32>\st\Ivy.htm
- <SYSTEM32>\st\Glacier.htm
- <SYSTEM32>\st\sapi.dll
- <SYSTEM32>\st\spcplui.dll
- <SYSTEM32>\st\Citrus Punch.htm
- <SYSTEM32>\st\Blank.htm
- <SYSTEM32>\st\msadcor.dll
- <SYSTEM32>\st\msadcs.dll
- <SYSTEM32>\st\msadco.dll
- <SYSTEM32>\st\msadcf.dll
- <SYSTEM32>\st\msadcfr.dll
- <SYSTEM32>\st\msaddsr.dll
- <SYSTEM32>\st\msdfmap.dll
- <SYSTEM32>\st\msdadc.dll
- <SYSTEM32>\st\msdaremr.dll
- <SYSTEM32>\st\msdaprsr.dll
- <SYSTEM32>\st\msdarem.dll
- <SYSTEM32>\st\spcommon.dll
- <SYSTEM32>\st\MDACReadme.htm
- <SYSTEM32>\st\wisc10.dll
- <SYSTEM32>\st\msconv97.dll
- <SYSTEM32>\st\mssoapr.dll
- <SYSTEM32>\st\msader15.dll
- <SYSTEM32>\st\directdb.dll
- <SYSTEM32>\st\msadcer.dll
- <SYSTEM32>\st\msjro.dll
- <SYSTEM32>\st\msador15.dll
- <SYSTEM32>\st\msadrh15.dll
- <SYSTEM32>\st\buildconfig.html
- <SYSTEM32>\st\child.html
- <SYSTEM32>\st\tabview.html
- <SYSTEM32>\st\AccessibleMarshal.dll
- <SYSTEM32>\st\inspector.html
- <SYSTEM32>\st\directionDetector.html
- <SYSTEM32>\st\IA2Marshal.dll
- <SYSTEM32>\st\mozalloc.dll
- <SYSTEM32>\st\bookmarks.html
- <SYSTEM32>\st\plugins.html
- <SYSTEM32>\st\hiddenWindow.html
- <SYSTEM32>\st\msdaosp.dll
- <SYSTEM32>\st\msdasc.dll
- <SYSTEM32>\st\msdaorar.dll
- <SYSTEM32>\st\msdaenum.dll
- <SYSTEM32>\st\msdaer.dll
- <SYSTEM32>\st\msdasqlr.dll
- <SYSTEM32>\st\msxactps.dll
- <SYSTEM32>\st\oledb32r.dll
- <SYSTEM32>\st\msdaurl.dll
- <SYSTEM32>\st\msdatl3.dll
- <SYSTEM32>\st\msdatt.dll
- <SYSTEM32>\st\Technical.htm
- <SYSTEM32>\st\Compare.dll
- <SYSTEM32>\st\DrawLine.dll
- <SYSTEM32>\st\changes.txt
- <SYSTEM32>\st\AutoWrap.dll
- <SYSTEM32>\st\Brackets.dll
- <SYSTEM32>\st\EditCase.dll
- <SYSTEM32>\st\FileCase.dll
- <SYSTEM32>\st\FtpCmds.txt
- <SYSTEM32>\st\FARCmds.dll
- <SYSTEM32>\st\EMenu.dll
- <SYSTEM32>\st\esearch.dll
- <SYSTEM32>\st\Plugins.Install.txt
- <SYSTEM32>\st\Plugins.Review.txt
- <SYSTEM32>\st\Far.FAQ.txt
- <SYSTEM32>\st\Arc.Support.txt
- <SYSTEM32>\st\Bug.Report.txt
- <SYSTEM32>\st\TechInfo.txt
- <SYSTEM32>\st\far7z.txt
- <SYSTEM32>\st\Align.dll
- <SYSTEM32>\st\FExcept.dll
- <SYSTEM32>\st\demangle32.dll
- <SYSTEM32>\st\ExcDump.dll
- <SYSTEM32>\st\Ivy.htm
- <SYSTEM32>\st\Leaves.htm
- <SYSTEM32>\st\Glacier.htm
- <SYSTEM32>\st\Clear Day.htm
- <SYSTEM32>\st\Fiesta.htm
- <SYSTEM32>\st\Maize.htm
- <SYSTEM32>\st\Sunflower.htm
- <SYSTEM32>\st\Sweets.htm
- <SYSTEM32>\st\Pie Charts.htm
- <SYSTEM32>\st\Nature.htm
- <SYSTEM32>\st\Network Blitz.htm
- <SYSTEM32>\st\HlfViewer.dll
- <SYSTEM32>\st\MacroView.dll
- <SYSTEM32>\st\Notes_rus.txt
- <SYSTEM32>\st\FtpCmds_rus.txt
- <SYSTEM32>\st\Notes.txt
- <SYSTEM32>\st\Network.dll
- <SYSTEM32>\st\Blank.htm
- <SYSTEM32>\st\Citrus Punch.htm
- <SYSTEM32>\st\spcplui.dll
- <SYSTEM32>\st\Proclist.dll
- <SYSTEM32>\st\TmpPanel.dll
- 'ma##.##epherdstown.com':25
- 'ma##.gmail.com':25
- 'ma##.#arthlink.net':25
- 'ir#.##dernet.org':6667
- 'ma##.#igfoot.com':25
- 'ma##.#etscape.com':25
- DNS ASK gm##l.com
- DNS ASK ma##.##epherdstown.com
- DNS ASK ma##.gmail.com
- DNS ASK ma##.#arthlink.net
- DNS ASK ea###link.net
- DNS ASK sh####rdstown.com
- DNS ASK bi##oot.com
- DNS ASK ir#.##dernet.org
- DNS ASK ma##.#igfoot.com
- DNS ASK ma##.#etscape.com
- DNS ASK ne###ape.com