Техническая информация
- ClassName: 'FilemonClass', WindowName: ''
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- ClassName: 'RegmonClass', WindowName: ''
- %TEMP%\aut4172.tmp
- %ALLUSERSPROFILE%\ccleaner 5.82.8950.svc_8ipvq.exe
- %TEMP%\aut4367.tmp
- %ALLUSERSPROFILE%\ccleaner 5.82.8950_dba9m.exe
- %TEMP%\is-stv6g.tmp\ccleaner 5.82.8950_dba9m.tmp
- %TEMP%\is-trc6r.tmp\_isetup\_regdll.tmp
- %TEMP%\is-trc6r.tmp\_isetup\_setup64.tmp
- %TEMP%\is-trc6r.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-trc6r.tmp\istask.dll
- %TEMP%\is-trc6r.tmp\vclstylesinno.dll
- %TEMP%\is-trc6r.tmp\metroblue.vsf
- %TEMP%\is-trc6r.tmp\wizardform.bitmapimage1.bmp
- %TEMP%\aut4172.tmp
- %TEMP%\aut4367.tmp
- '34.##1.128.39':80
- http://34.##1.128.39/
- 'te##te.in':443
- DNS ASK te##te.in
- ClassName: 'Edit' WindowName: ''
- ClassName: 'File Monitor - Sysinternals: www.sysinternals.com' WindowName: ''
- ClassName: 'Process Monitor - Sysinternals: www.sysinternals.com' WindowName: ''
- ClassName: 'Registry Monitor - Sysinternals: www.sysinternals.com' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- '%ALLUSERSPROFILE%\ccleaner 5.82.8950.svc_8ipvq.exe'
- '%ALLUSERSPROFILE%\ccleaner 5.82.8950_dba9m.exe'
- '%TEMP%\is-stv6g.tmp\ccleaner 5.82.8950_dba9m.tmp' /SL5="$D0230,21572242,64512,%ALLUSERSPROFILE%\CCleaner 5.82.8950_DBa9m.exe"