Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'EzPrivacy' = '"%PROGRAM_FILES%\АМБц ЗБ¶уАМ№цЅГ\EzPrivacy2.exe" 1'
- %PROGRAM_FILES%\АМБц ЗБ¶уАМ№цЅГ\RegistInstallCnt.exe -serverUrl www.ez###vacy.co.kr -object /setup/SetMacAddress.php?MacAddress=%s&partnerid=utilheaven
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\АМБц ЗБ¶уАМ№цЅГ.lnk
- %HOMEPATH%\Start Menu\АМБц ЗБ¶уАМ№цЅГ.lnk
- %PROGRAM_FILES%\АМБц ЗБ¶уАМ№цЅГ\uninst.exe
- %TEMP%\nsz2.tmp\System.dll
- %PROGRAM_FILES%\АМБц ЗБ¶уАМ№цЅГ\RegistInstallCnt.exe
- %PROGRAM_FILES%\АМБц ЗБ¶уАМ№цЅГ\EzPrivacy2.exe
- %HOMEPATH%\Desktop\АМБц ЗБ¶уАМ№цЅГ.lnk
- %HOMEPATH%\Start Menu\Programs\АМБц ЗБ¶уАМ№цЅГ\АМБц ЗБ¶уАМ№цЅГ.lnk
- %TEMP%\nsz2.tmp\System.dll
- 'www.ez###vacy.co.kr':80
- www.ez###vacy.co.kr/setup/SetMacAddress.php?Ma##########################################
- DNS ASK www.ez###vacy.co.kr
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Indicator' WindowName: ''