Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Adobe_Update.exe' = '%APPDATA%\Adobe_Update.exe'
- %HOMEPATH%\Start Menu\Programs\Startup\Adobe_Update.exe.lnk
- '%APPDATA%\Taskmgr.exe' -o http://mg############r:Worker@eu1.triplemining.com:8344 -g no -t 1 -T 40
- '%APPDATA%\Taskmgr.exe' -o http://mg############r:Worker@eu1.triplemining.com:8344 -g yes -I -10 -t 1 -T 40
- '%APPDATA%\Adobe_Update.exe'
- ClassName: 'OLLYDBG' WindowName: ''
- %TEMP%\evb4.tmp
- %TEMP%\evb3.tmp
- %TEMP%\evb6.tmp
- %TEMP%\evb5.tmp
- %APPDATA%\Adobe_Update.exe
- %APPDATA%\Taskmgr.exe
- %TEMP%\evb2.tmp
- %TEMP%\evb1.tmp
- 'eu#.###plemining.com':8344
- DNS ASK eu#.###plemining.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''