Техническая информация
- %TEMP%\Init.exe
- %TEMP%\load.exe
- %WINDIR%\explorer.exe
- <SYSTEM32>\svchost.exe
- %TEMP%\Init.exe
- %WINDIR%\wdmaud.drv
- %TEMP%\load.exe
- %ALLUSERSPROFILE%\prodll.dat
- %ALLUSERSPROFILE%\profile.db
- %ALLUSERSPROFILE%\prodll.dat
- 'localhost':8000
- ClassName: 'Proxy Desktop' WindowName: ''