Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{1CBEDA17-1CA1-B079-0401-070506040000}] 'StubPath' = '<SYSTEM32>\Cryptssl.exe'
- %WINDIR%\Explorer.EXE
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: ''
- ClassName: 'RegMonClass' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- <SYSTEM32>\Cryptssl.exe
- %ALLUSERSPROFILE%\Application Data\TEMP:3D384BBA
- 'localhost':5500
- ClassName: 'ThunderRT6FormDC' WindowName: ''
- ClassName: 'ThunderRT6FormDC' WindowName: 'Shareware Cheater v 3.0'