Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\XTOR_ENGINE] 'ImagePath' = '"%ProgramFiles%\XTorEngine\XTorEngine.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\XTOR_ENGINE] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%ProgramFiles%\XTorEngine\XTorEngine.exe' = '%ProgramFiles%\XTorEngine...
- '%ProgramFiles%\XTorEngine\XTorEngine.exe'
- '%ProgramFiles%\XTorEngine\XTorEngine.exe' -i
- '%TEMP%\nsk2.tmp\ns3.tmp' %ProgramFiles%\XTorEngine\XTorEngine.exe -i
- %TEMP%\nsk2.tmp\ns3.tmp
- %TEMP%\nsk2.tmp\nsExec.dll
- %ALLUSERSPROFILE%\Application Data\XTor\info
- %ALLUSERSPROFILE%\Application Data\XTor\info-journal
- %ProgramFiles%\XTorEngine\XTOR2.dll
- %TEMP%\nsk2.tmp\KillProcDLL.dll
- %ProgramFiles%\Megafile\XTOR2.dll
- %ProgramFiles%\XTorEngine\XTorEngine.exe
- %TEMP%\nsk2.tmp\KillProcDLL.dll
- %TEMP%\nsk2.tmp\nsExec.dll
- %ALLUSERSPROFILE%\Application Data\XTor\info-journal
- %TEMP%\nsk2.tmp\ns3.tmp
- %ALLUSERSPROFILE%\Application Data\XTor\info-journal
- 'localhost':1038
- 'any':5351
- '23#.#55.255.250':1900
- ClassName: '' WindowName: 'Megafile 업데이트'
- ClassName: '' WindowName: 'Megafile ????'