Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'uspack' = '%PROGRAM_FILES%\Utility Service Pack\MyStart.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'uspack' = '"%PROGRAM_FILES%\Utility Service Pack\USP.exe"'
- %PROGRAM_FILES%\Utility Service Pack\MyStart.exe
- %PROGRAM_FILES%\Utility Service Pack\MyStart.exe
- %PROGRAM_FILES%\Utility Service Pack\DelLog.exe
- %PROGRAM_FILES%\Utility Service Pack\Uninstall.ini
- %PROGRAM_FILES%\Utility Service Pack\Uninstall.exe
- %TEMP%\$inst\4.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\5.tmp
- %TEMP%\$inst\temp_0.tmp
- 'us###k.co.kr':80
- us###k.co.kr/app/receive/log.php?pi#########
- DNS ASK us###k.co.kr
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''