Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Autumn' = '%APPDATA%\Founder Systems\SystemControlS.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Autumn' = '<Полный путь к вирусу>'
- '%APPDATA%\Founder Systems\SystemControlS.exe'
- '%APPDATA%\Founder Systems\logtasks.exe'
- '%WINDIR%\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe' /silent /codebase "%APPDATA%\Founder Systems\ie2.dll"
- %APPDATA%\Founder Systems\icon_32.png
- %APPDATA%\Founder Systems\icon_16.png
- %APPDATA%\Founder Systems\jquery.js
- %APPDATA%\Founder Systems\page.html
- %APPDATA%\Founder Systems\manifest.json
- %APPDATA%\Founder Systems\SystemControlS.exe
- %APPDATA%\Founder Systems\logtasks.exe
- %TEMP%\tmp1.tmp
- %APPDATA%\Founder Systems\icon_128.png
- %APPDATA%\Founder Systems\home.js
- %TEMP%\tmp1.tmp
- ClassName: 'Indicator' WindowName: ''