Техническая информация
- %TEMP%\windowsupdate.exe
- %TEMP%\psgvhjiq.exe
- %TEMP%\wlni.exe x "%TEMP%\ldfcx.7z" -pkmnepfrsck -o"%TEMP%\" -aoa
- <SYSTEM32>\reg.exe ADD HKCU\Software\TR1 /v uni /t REG_SZ /d 1
- %TEMP%\nsc2.tmp\ExecDos.dll
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %TEMP%\windowsupdate.exe
- %TEMP%\psgvhjiq.exe
- %TEMP%\wlni.exe
- %TEMP%\ldfcx.7z
- %TEMP%\nsc2.tmp\ExecDos.dll
- 'up###exvid.com':80
- 'localhost':1036
- up###exvid.com/script/display.php
- DNS ASK up###exvid.com
- ClassName: 'TkTopLevel' WindowName: 'Setup'
- ClassName: 'WindowsForms10.Window.208.app.0.378734a' WindowName: 'Setup'
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: '' WindowName: 'Preparing to install RealPlayer'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '#32770' WindowName: 'BuzzSocialPoints_DNS_IE Setup'
- ClassName: 'AppBundlerProgressClass' WindowName: ''