Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Aut88E6680F' = '%WINDIR%\Registration\AU88E6680F.exe'
- %WINDIR%\Registration\AU88E6680F.exe
- <Полный путь к вирусу>
- ClassName: '' WindowName: 'Windows Live Messenger'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'AU88E6680F'