Техническая информация
- update~1.exe
- [HKCU\Software\Google\Google Talk\Accounts]
- [HKCU\Software\Paltalk]
- %LOCALAPPDATA%\google\chrome\user data\default\web data
- %TEMP%\ixp000.tmp\update~1.exe
- %TEMP%\ixp000.tmp\winrar~2.exe
- %APPDATA%\chrtmp
- %TEMP%\ixp000.tmp\update~1.exe
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%TEMP%\ixp000.tmp\update~1.exe'
- '%TEMP%\ixp000.tmp\winrar~2.exe'
- '%WINDIR%\syswow64\cmd.exe' /c timeout 5 && del %TEMP%\IXP000.TMP\UPDATE~1.EXE (со скрытым окном)
- '%WINDIR%\syswow64\timeout.exe' 5