Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '<LS_APPDATA>\DirectDownloader\directdownloader.exe' = '<LS_APPDATA>\DirectDownloader\directdownloader.exe:*:Enabled:DirectDownloader'
- <SYSTEM32>\netsh.exe firewall add allowedprogram "<LS_APPDATA>\DirectDownloader\directdownloader.exe" "DirectDownloader" ENABLE
- %TEMP%\DirectDownloaderInstaller.exe
- %TEMP%\bundlesweetimsetup.exe
- <LS_APPDATA>\DirectDownloader\directdownloader.exe
- 'www.di#####ownloader.com':80
- 'cd#.####load.sweetpacks.com':80
- www.di#####ownloader.com/DirectDownloaderInstaller.exe
- cd#.####load.sweetpacks.com/simsdm/bundle/bundlesweetimsetup.exe
- DNS ASK www.di#####ownloader.com
- DNS ASK cd#.####load.sweetpacks.com
- ClassName: 'Shell_TrayWnd' WindowName: ''