Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'MediaUpdate' = '"%TEMP%\MediaUp.exe"'
- %TEMP%\MediaUp.exe
- %APPDATA%\MediaU.exe
- %APPDATA%\kitsusaga_us_downloader.exe
- %TEMP%\akamaiclient\29511325\csd.dll
- %TEMP%\akamaiclient\29511325\Download_Manager_414x70_KS.bmp
- %TEMP%\MediaUp.exe
- %TEMP%\nsq2.tmp\System.dll
- %APPDATA%\kitsusaga_us_downloader.exe
- %APPDATA%\MediaU.exe
- %TEMP%\nsq2.tmp\UserInfo.dll
- %TEMP%\MediaUp.exe
- 'www.sn###cif.com':80
- www.sn###cif.com/update/client/info.php?si############################
- DNS ASK www.sn###cif.com
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''