Техническая информация
- C:\RMT_Help\AVO\AVO.exe (загружен из сети Интернет)
- C:\RMT_Help\CClean\ccleanerAI.exe (загружен из сети Интернет)
- <SYSTEM32>\sc.exe config Alerter start= disabled
- <SYSTEM32>\sc.exe config ALG start= demand
- <SYSTEM32>\sc.exe query state= all
- <SYSTEM32>\sc.exe config Adobe LM Service start= demand
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\AVO[1].exe
- C:\RMT_Help\AVO\AVO.exe
- C:\RMT_Help\ServiceState.log
- C:\RMT_Help\CClean\ccleanerAI.exe
- %TEMP%\aut1.tmp
- C:\RMT_Help\Optimize.txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\ccleanerai[1].exe
- %TEMP%\aut1.tmp
- 'ar###.ads-gdn.com':80
- ar###.ads-gdn.com/arrowtools/removaltools/Optimize/AVO.exe
- ar###.ads-gdn.com/arrowtools/removaltools/Optimize/ccleanerai.exe
- DNS ASK ar###.ads-gdn.com
- ClassName: 'Shell_TrayWnd' WindowName: ''