Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '41b1b34c3483071dbd33a6252f5ada58' = '"<SYSTEM32>\Gladiator.exe" ..'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '41b1b34c3483071dbd33a6252f5ada58' = '"<SYSTEM32>\Gladiator.exe" ..'
- %HOMEPATH%\Start Menu\Programs\Startup\41b1b34c3483071dbd33a6252f5ada58.exe
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '<SYSTEM32>\Gladiator.exe' = '<SYSTEM32>\Gladiator.exe:*:Enabled:Gladiator.exe'
- '%TEMP%\DzGladiator.exe'
- '<SYSTEM32>\Gladiator.exe'
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "<SYSTEM32>\Gladiator.exe" "Gladiator.exe" ENABLE
- %TEMP%\DzGladiator.exe
- %PROGRAM_FILES%\DzGladiator\DzGladiator\Uninstall.exe
- %PROGRAM_FILES%\DzGladiator\DzGladiator\Uninstall.ini
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- <SYSTEM32>\Gladiator.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- 'mc####55.no-ip.info':5571
- DNS ASK mc####55.no-ip.info
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''