Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'softonic_suggest' = '"%APPDATA%\Softonic Suggest\softonic_suggest.exe"'
- %APPDATA%\Softonic Suggest\softonic_suggest.exe
- %APPDATA%\Softonic Suggest\SoftonicSuggest.exe
- %TEMP%\nsd2.tmp\ns3.tmp "%APPDATA%\Softonic Suggest\SoftonicSuggest.exe"
- %APPDATA%\Softonic Suggest\softonic_suggest.exe
- %TEMP%\nsd2.tmp\ns3.tmp
- %HOMEPATH%\Start Menu\Programs\ЖEв\Uninstall.lnk
- %HOMEPATH%\Start Menu\Programs\ЖEв\Softonic Suggest.lnk
- %TEMP%\nsd2.tmp\nsExec.dll
- %APPDATA%\Softonic Suggest\SoftonicSuggest.exe
- %TEMP%\nsd2.tmp\SearchDeskBarPlugin.dll
- %APPDATA%\Softonic Suggest\msvcr90.dll
- %APPDATA%\Softonic Suggest\msvcp90.dll
- %TEMP%\nsd2.tmp\SearchDeskBarPlugin.dll
- %TEMP%\nsd2.tmp\nsExec.dll
- %TEMP%\nsd2.tmp\ns3.tmp
- 'ag###.sftlabs.com':80
- ag###.sftlabs.com/event:e:started:k:MZ?:c####
- ag###.sftlabs.com/apikey:v:1.0
- ag###.sftlabs.com/handshake.json
- DNS ASK ag###.sftlabs.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''
- ClassName: '' WindowName: 'Softonic Suggest'