Техническая информация
- crypted.exe
- [<HKCU>\Software\Google\Google Talk\Accounts]
- [<HKCU>\Software\Paltalk]
- %LOCALAPPDATA%\google\chrome\user data\default\web data
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- ClassName: 'gdkWindowToplevel', WindowName: ''
- %TEMP%\crypted.exe
- %TEMP%\eav_64bit_4.2.64.12.msi
- %APPDATA%\chrtmp
- %TEMP%\mside80.tmp
- %TEMP%\msie064.tmp
- %TEMP%\msie085.tmp
- %TEMP%\inxe214.tmp
- %TEMP%\mside80.tmp
- %TEMP%\msie064.tmp
- %TEMP%\msie085.tmp
- '%TEMP%\crypted.exe'
- '%WINDIR%\syswow64\msiexec.exe' /i "%TEMP%\eav_64Bit_4.2.64.12.msi"