Техническая информация
- '%APPDATA%\System Idle Process\winlogon.exe'
- [<HKCU>\Software\Paltalk]
- \Device\LanmanRedirector\CRNJEUFU\Program Settings\winadmin-setup.exe
- C:\Program Settings\winadmin-setup.exe
- %TEMP%\spreadpunisher.txt
- %APPDATA%\System Idle Process\winlogon.exe
- %TEMP%\meltt.txt
- %APPDATA%\System Idle Process\winlogon.exe
- 'localhost':445
- ClassName: 'Shell_traywnd' WindowName: ''