Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'clover_u' = '%PROGRAM_FILES%\brainclan CP\clover_updater.exe'
- %PROGRAM_FILES%\brainclan CP\clover_updater.exe
- %WINDIR%\cloveruninstall.exe
- %WINDIR%\CloverPlus.cot
- %ALLUSERSPROFILE%\Start Menu\Programs\єк·№АОЕ¬·Ј ЗГ·ЇЅє CP\BrainClan Plus CP IE Helper јіДЎБ¦°Е.lnk
- %PROGRAM_FILES%\brainclan CP\clover_updater.zip
- %WINDIR%\cloveruninstall.zip
- %PROGRAM_FILES%\brainclan CP\c_updater.exe
- %WINDIR%\cloveruninstall.zip
- %PROGRAM_FILES%\brainclan CP\clover_updater.zip
- %WINDIR%\cloveruninstall.exe в %WINDIR%\brainclan_uninstall.exe
- %PROGRAM_FILES%\brainclan CP\c_updater.exe в %PROGRAM_FILES%\brainclan CP\clover_updater.exe
- 'mn#.##overplus.com':80
- '20#.#6.232.182':80
- 'cn#.##overplus.com':80
- mn#.##overplus.com/files.php?cl##############
- 20#.#6.232.182/
- cn#.##overplus.com/log_progress.php?cl######################################
- DNS ASK mn#.##overplus.com
- DNS ASK www.microsoft.com
- DNS ASK cn#.##overplus.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''