Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'game' = '"%PROGRAM_FILES%\game\game.exe"'
- %PROGRAM_FILES%\game\game.exe
- %TEMP%\nse2.tmp\Senddata.dll
- %ALLUSERSPROFILE%\Desktop\ЙЁАЧУОП·.lnk
- <SYSTEM32>\Com\1.1.5\WndHook.dll
- <SYSTEM32>\comarshal.dat
- <SYSTEM32>\Com\Config.cfg
- %ALLUSERSPROFILE%\Start Menu\Programs\ЙЁАЧУОП·\ЙЁАЧУОП·Р¶ФШ.lnk
- %PROGRAM_FILES%\game\HtmlPeek.dll
- %PROGRAM_FILES%\game\EULA.txt
- %PROGRAM_FILES%\game\game.exe
- %ALLUSERSPROFILE%\Start Menu\Programs\ЙЁАЧУОП·\ЙЁАЧУОП·.lnk
- %PROGRAM_FILES%\game\uninstall.exe
- %TEMP%\nse2.tmp\Senddata.dll
- 'www.1c#t.cn':80
- www.1c#t.cn/in.php
- DNS ASK www.1c#t.cn
- ClassName: 'Shell_TrayWnd' WindowName: ''