Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'draiver' = '<SYSTEM32>\MPK.exe'
- <SYSTEM32>\MPK.exe
- <SYSTEM32>\confer.exe
- %ALLUSERSPROFILE%\Application Data\MPK\S0000
- %ALLUSERSPROFILE%\Application Data\MPK\M0000-journal
- %ALLUSERSPROFILE%\Application Data\MPK\M0000
- <SYSTEM32>\MPK64.dll
- %ALLUSERSPROFILE%\Application Data\MPK\CPDM\cpfm.bin
- %ALLUSERSPROFILE%\Application Data\MPK\2\D0000
- %ALLUSERSPROFILE%\Application Data\MPK\etilqs_EWz7K6FyXrd6EJi
- %ALLUSERSPROFILE%\Application Data\MPK\etilqs_1jdzs3zl87RBozB
- %ALLUSERSPROFILE%\Application Data\MPK\2\S0000
- %ALLUSERSPROFILE%\Application Data\MPK\2\D0000-journal
- <SYSTEM32>\key.bin
- <SYSTEM32>\MPK.dll
- <SYSTEM32>\MPK.exe
- <SYSTEM32>\MPK64.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- <SYSTEM32>\zlib1.dll
- <SYSTEM32>\confer.exe
- <SYSTEM32>\trial_net.ini
- <SYSTEM32>\sqlite3.dll
- <SYSTEM32>\ssleay32.dll
- %ALLUSERSPROFILE%\Application Data\MPK\M0000-journal
- %ALLUSERSPROFILE%\Application Data\MPK\2\D0000-journal
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''