Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'eis1' = '<SYSTEM32>\cdpeis1.exe'
- %WINDIR%\eisd1.dat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\eisd1[1].dat
- %WINDIR%\eisd1.dat
- 'in#####.cleardisk-plus.com':80
- 'localhost':1036
- in#####.cleardisk-plus.com/tdplus/pid/eis1/eisd1.dat
- DNS ASK in#####.cleardisk-plus.com
- ClassName: 'Indicator' WindowName: ''