Техническая информация
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://tj.loader.cpadown.com:8080/alltj.html?setup
- %TEMP%\nsle64a.tmp
- %TEMP%\nsfe6c7.tmp\system.dll
- %TEMP%\temp.ini
- %TEMP%\uninst.exe
- %TEMP%\nsqe9c3.tmp
- %TEMP%\~nsu.tmp\au_.exe
- %TEMP%\nslf0a6.tmp
- %TEMP%\nsfe6c7.tmp\system.dll
- %TEMP%\uninst.exe
- %TEMP%\temp.ini
- DNS ASK tj.####er.cpadown.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- ClassName: 'Static' WindowName: ''
- '%TEMP%\uninst.exe'
- '%TEMP%\~nsu.tmp\au_.exe' _?=%TEMP%\
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://tj.loader.cpadown.com:8080/alltj.html?setup' (со скрытым окном)