Техническая информация
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'MaglaPlayerUpdater' = '"%ProgramFiles%\Elektro Kod\MaglaPlayerUpdater.exe"'
- <SYSTEM32>\tasks\systemupdatecheck
- %ProgramFiles%\elektro kod\axinterop.wmplib.dll
- %ProgramFiles%\elektro kod\htmlagilitypack.dll
- %ProgramFiles%\elektro kod\interop.wmplib.dll
- %ProgramFiles%\elektro kod\mediaslider.dll
- %ProgramFiles%\elektro kod\newtonsoft.json.dll
- %ProgramFiles%\elektro kod\vknet.dll
- %ProgramFiles%\elektro kod\maglaplayer.exe
- %ProgramFiles%\elektro kod\icon.ico
- %ProgramFiles%\elektro kod\applicationsettings.json
- %ProgramFiles%\elektro kod\uninstall.exe
- %ProgramFiles%\elektro kod\maglaplayerupdater.exe
- %LOCALAPPDATA%\magla player\uss.prc
- %HOMEPATH%\desktop\magla player.lnk
- 'iv#a.ru':80
- 'iv#a.ru':443
- http://iv#a.ru/test_ver.php
- http://iv#a.ru/test_test.php/test.php?ac########################################################################################################
- 'iv#a.ru':443
- DNS ASK iv#a.ru
- DNS ASK ds####xafcdaf.net
- DNS ASK vc###vnovi.net
- DNS ASK da###fdadsa.com
- DNS ASK ax######epelicahuanj.com
- '<SYSTEM32>\schtasks.exe' /create /sc MINUTE /mo 5 /tn SystemUpdateCheck /tr %LOCALAPPDATA%\SysUpdateCheck.exe /rl HIGHEST