Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] 'svсhost' = '"%TEMP%\cg\run.exe"'
- '%TEMP%\cg\svchost.exe'
- '%TEMP%\SelfDel.exe' /sfx=<Полный путь к вирусу>
- '%TEMP%\cg\run.exe'
- %TEMP%\cg\run.exe
- %TEMP%\cg\scrypt130302.cl
- %TEMP%\cg\phatk121016.cl
- %TEMP%\cg\poclbm130302.cl
- %TEMP%\cg\scrypt130511.cl
- %TEMP%\cg\zlib1.dll
- %TEMP%\SelfDel.exe
- %TEMP%\cg\ssleay32.dll
- %TEMP%\cg\svchost.exe
- %TEMP%\cg\libusb-1.0.dll
- %TEMP%\cg\diablo130302.cl
- %TEMP%\cg\diakgcn121016.cl
- %TEMP%\nsg2.tmp\System.dll
- %TEMP%\cg\cgminer.conf
- %TEMP%\cg\libcurl.dll
- %TEMP%\cg\librtmp.dll
- %TEMP%\cg\libssh2.dll
- %TEMP%\cg\libeay32.dll
- %TEMP%\cg\libidn-11.dll
- %TEMP%\nsg2.tmp\System.dll