Техническая информация
- '%APPDATA%\stеаmwеbhеlpеr.exe'
- '<SYSTEM32>\cmd.exe' /K "%APPDATA%\stеаmwеbhеlpеr.exe"
- '<SYSTEM32>\reg.exe' reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\Run" /f /v "e16734e1-f0ed-406d-941e-400c8e13f5c3" /t REG_SZ /d "%APPDATA%\stеаmwеbhеlpеr.exe" & exit
- stеаmwеbhеlpеr.exe
- ClassName: 'PROCEXPL', WindowName: ''
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- %APPDATA%\stеаmwеbhеlpеr.exe
- %APPDATA%\stеаmwеbhеlpеr.exe
- '21#.#6.115.109':56561
- ClassName: 'Shell_TrayWnd' WindowName: ''