Техническая информация
- [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'me' = '%LOCALAPPDATA%\Macromedia\flashutill.exe'
- [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'me1' = '%LOCALAPPDATA%\Macromedia\TestApp.exe'
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyServer' = 'http=127.0.0.1:8083'
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyEnable' = '00000001'
- %LOCALAPPDATA%\macromedia\resources.resources
- %LOCALAPPDATA%\macromedia\proxyservice.dll
- %LOCALAPPDATA%\macromedia\testapp.exe
- %LOCALAPPDATA%\macromedia\testapp.exe.config
- %LOCALAPPDATA%\macromedia\flashutill.exe
- %LOCALAPPDATA%\macromedia\version
- DNS ASK do###agent.ru
- '%LOCALAPPDATA%\macromedia\testapp.exe'