Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Update.bat' = '%TEMP%\Update\Update.bat'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Updater.exe' = '%PROGRAM_FILES%\valv\Updater.exe'
- '%PROGRAM_FILES%\valv\Updater.exe'
- '%TEMP%\Counter-Strike Servers.exe'
- %PROGRAM_FILES%\valv\Updater.exe
- <LS_APPDATA>\Microsoft_©\Updater.exe_Url_wcgp3yj4xwtdrqeozbjgppvxnspsehlw\6.18.2.0\u831aqgn.newcfg
- <LS_APPDATA>\Microsoft_©\Updater.exe_Url_wcgp3yj4xwtdrqeozbjgppvxnspsehlw\6.18.2.0\vc36en86.newcfg
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\Counter-Strike Servers.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- <LS_APPDATA>\Microsoft_©\Updater.exe_Url_wcgp3yj4xwtdrqeozbjgppvxnspsehlw\6.18.2.0\vc36en86.newcfg в <LS_APPDATA>\Microsoft_©\Updater.exe_Url_wcgp3yj4xwtdrqeozbjgppvxnspsehlw\6.18.2.0\user.config
- <LS_APPDATA>\Microsoft_©\Updater.exe_Url_wcgp3yj4xwtdrqeozbjgppvxnspsehlw\6.18.2.0\u831aqgn.newcfg в <LS_APPDATA>\Microsoft_©\Updater.exe_Url_wcgp3yj4xwtdrqeozbjgppvxnspsehlw\6.18.2.0\user.config
- 'ch#######ate-data.blogspot.com':80
- 'wp#d':80
- ch#######ate-data.blogspot.com/robots.txt
- wp#d/wpad.dat
- DNS ASK ch####p.dyndns.org
- DNS ASK ch#######ate-data.blogspot.com
- DNS ASK wp#d
- ClassName: 'Shell_TrayWnd' WindowName: ''