Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'dllhost' = '%WINDIR%\dllhost.exe'
- <SYSTEM32>\taskkill.exe /im elementclient.exe /f
- <SYSTEM32>\taskkill.exe /im KartRider.exe /f
- <SYSTEM32>\taskkill.exe /im Lobby.exe /f
- <SYSTEM32>\taskkill.exe /im Game.exe /f
- <SYSTEM32>\reg.exe add HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v dllhost /d %WINDIR%\dllhost.exe /f
- <SYSTEM32>\regsvr32.exe /s <Текущая директория>\Jmail.dll
- <SYSTEM32>\taskkill.exe /im soul.exe /f
- <SYSTEM32>\taskkill.exe /im qq.exe /f
- <SYSTEM32>\taskkill.exe
- ClassName: '' WindowName: 'Element client'
- ClassName: '' WindowName: '??????'
- ClassName: '' WindowName: 'Windows ????'
- ClassName: '' WindowName: 'QQ????'
- ClassName: '' WindowName: 'SRO_Client'
- ClassName: '' WindowName: '????'
- ClassName: '' WindowName: '??OL'
- ClassName: '' WindowName: 'Login'