Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] 'shell' = '%TEMP%\EUSCaMCF\NFgdYSLR.exe'
- '%APPDATA%\KQfGYWTPGN.exe'
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: ''
- ClassName: 'RegMonClass' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players10.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players11.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players9.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players7.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players8.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players12.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\besttimes.ppp
- %TEMP%\EUSCaMCF\NFgdYSLR.exe
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players15.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players13.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players14.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players6.ppp
- %TEMP%\TiSVMOJBIHQ.gXYA
- %APPDATA%\KQfGYWTPGN.exe
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- %TEMP%\MfeiMKNROb.ZU
- %APPDATA%\Atlantic Quest 3-v-0-0-18\settings.txt
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players4.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players5.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players3.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players1.ppp
- %APPDATA%\Atlantic Quest 3-v-0-0-18\players2.ppp
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''