Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\kav] 'Start' = '00000002'
- '%TEMP%\setup.exe'
- '<SYSTEM32>\msiexec.exe'
- <SYSTEM32>\msiexec.exe
- %ALLUSERSPROFILE%\Application Data\kav\config.ini
- %TEMP%\setup.exe
- %TEMP%\msi.dll
- %TEMP%\msi.dll.url в %ALLUSERSPROFILE%\Application Data\kav\msi.dll.url
- %TEMP%\msi.dll в %ALLUSERSPROFILE%\Application Data\kav\msi.dll
- %TEMP%\setup.exe в %ALLUSERSPROFILE%\Application Data\kav\svchost.exe
- '10#.#42.133.185':443