Техническая информация
- <SYSTEM32>\tasks\microsoft\windows\everything\index
- <SYSTEM32>\tasks\microsoft\windows\everything\storage
- %ProgramFiles(x86)%\lookeverything\file.7z
- %ProgramFiles(x86)%\lookeverything\lookcore32.dll
- %ProgramFiles(x86)%\lookeverything\lookcore64.dll
- %ProgramFiles(x86)%\lookeverything\lookeverything.exe
- %ProgramFiles(x86)%\lookeverything\uninst.exe
- %ALLUSERSPROFILE%\lookeverything\lookcore64.dll
- %ProgramFiles(x86)%\lookeverything\file.7z
- 'mm###.paahu.com':80
- http://mm###.paahu.com/style01/us_c.css?ra#######################################################################################################################################################...
- DNS ASK mm###.paahu.com
- '%WINDIR%\syswow64\rundll32.exe' "%ALLUSERSPROFILE%\LookEverything\LookCore64.dll",ZeroSearchCreate
- '<SYSTEM32>\rundll32.exe' "%ALLUSERSPROFILE%\LookEverything\LookCore64.dll",ZeroSearchCreate