Техническая информация
- '%TEMP%\nsy3.tmp\ns4.tmp' net stop WSCSVC
- '<SYSTEM32>\net1.exe' stop WSCSVC
- '<SYSTEM32>\net.exe' stop WSCSVC
- %TEMP%\nsy3.tmp\NSISdl.dll
- %WINDIR%\AdobeFlashPlayerUpdate.exe
- %WINDIR%\AdobeUpdater.exe
- %TEMP%\nsd2.tmp
- %TEMP%\nsy3.tmp\nsExec.dll
- %TEMP%\nsy3.tmp\ns4.tmp
- %TEMP%\nsy3.tmp\ns4.tmp
- 'cg###shadow.us':80
- cg###shadow.us/AdobeUpdater.exe
- cg###shadow.us/AdobeFlashPlayerUpdate.exe
- DNS ASK cg###shadow.us