Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '64260b839870f15aff52c7af4446c388' = '"%TEMP%\GoogleUpdateTaskMachineCore.exe" ..'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '64260b839870f15aff52c7af4446c388' = '"%TEMP%\GoogleUpdateTaskMachineCore.exe" ..'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%TEMP%\GoogleUpdateTaskMachineCore.exe' = '%TEMP%\GoogleUpdateTaskMach...
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "%TEMP%\GoogleUpdateTaskMachineCore.exe" "GoogleUpdateTaskMachineCore.exe" ENABLE
- '%TEMP%\GoogleUpdateTaskMachineCore.exe'
- %TEMP%\GoogleUpdateTaskMachineCore.exe
- 'se########.servecounterstrike.com':200
- DNS ASK se########.servecounterstrike.com