Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'AdobeFlash' = '%APPDATA%\Roaming\install_flash.exe'
- Средство контроля пользовательских учетных записей (UAC)
- '%APPDATA%\Roaming\install_flash.exe'
- C:\IntelStorage\12402\Pref.dat
- C:\IntelStorage\12402\script.js
- %TEMP%\fupdate.exe
- %APPDATA%\Roaming\flash.xpi
- C:\IntelStorage\12402\manifest.json
- C:\IntelStorage\12402\background.js
- %APPDATA%\Roaming\install_flash.exe
- C:\IntelStorage\12402\jquery-1.9.1.min.js
- C:\IntelStorage\12402\icon.png
- %APPDATA%\Roaming\install_flash.exe
- %TEMP%\fupdate.exe
- C:\IntelStorage\12402\Pref.dat
- 'ki###edya.org':80
- ki###edya.org/Crx/pref.dat
- ki###edya.org/Crx/script.js
- ki###edya.org/Crx/updateSky.exe
- ki###edya.org/Crx/flash.xpi
- ki###edya.org/Crx/icon.png
- ki###edya.org/Crx/background.js
- ki###edya.org/Crx/manifest.json
- ki###edya.org/Crx/jquery-1.9.1.min.js
- DNS ASK ki###edya.org
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'