Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\tkdska] 'Start' = '00000002'
- '%WINDIR%\setup.exe'
- '<SYSTEM32>\runonce.exe' -r
- '<SYSTEM32>\svchost.exe' -k netsvcs
- %WINDIR%\inf\oem3.inf
- %WINDIR%\setup.exe
- <DRIVERS>\SET3.tmp
- %WINDIR%\inf\oem3.PNF
- %WINDIR%\vkeysky.sys
- %TEMP%\187484_res.tmp
- %WINDIR%\exeinput.exe
- %WINDIR%\vkeysky.inf
- <SYSTEM32>\187468.dll
- <DRIVERS>\SET3.tmp в <DRIVERS>\vkeysky.sys
- %TEMP%\187484_res.tmp в <SYSTEM32>\187468.dll
- 'tk####.codns.com':4412
- DNS ASK tk####.codns.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'