Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'GoogleUpdate' = '%TEMP%\TakisESD.exe'
- %TEMP%\TakisESD.exe
- %TEMP%\Setup.exe
- %TEMP%\7za.exe x %TEMP%\a2.7z -aoa -o%HOMEPATH%\Local Settings\Temp -pmilfsex
- %TEMP%\7za.exe x %TEMP%\a1.7z -aoa -o%HOMEPATH%\Local Settings\Temp -pmilfsex
- <SYSTEM32>\msiexec.exe /i "Pro Evolution Soccer 2011.msi"
- %TEMP%\Setup.exe
- %TEMP%\nst3.tmp\ExecDos.dll
- %APPDATA%\Microsoft\Iso64\l.txt
- %TEMP%\TakisESD.exe
- %TEMP%\7za.exe
- %TEMP%\nsx2.tmp
- %TEMP%\a2.7z
- %TEMP%\a1.7z
- %TEMP%\nst3.tmp\ExecDos.dll
- 'xv#####ecdownloads.com':80
- 'localhost':1035
- xv#####ecdownloads.com/pnl/d.php
- xv#####ecdownloads.com/pnl/get.php
- DNS ASK xv#####ecdownloads.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''