Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'Run' = '%ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\config.exe'
- '<SYSTEM32>\reg.exe' add "HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows" /v "Run" /t reg_sz /d "%ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\config.exe"
- '<SYSTEM32>\cmd.exe' /c reg add "HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows" /v "Run" /t reg_sz /d "%ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\config.exe"
- '%TEMP%\tmp9234\i2390.exe' d528 r3206
- %TEMP%\tmp9234\d528
- %TEMP%\tmp9234\r3206
- %ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\lp.ini
- %TEMP%\tmp9234\readme.txt
- %TEMP%\tmp9234\pub.key
- %TEMP%\tmp9234\i2390.exe
- %TEMP%\tmp9234\r3206 в %ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\config.exe
- %TEMP%\tmp9234\pub.key в %ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\pub.key
- %TEMP%\tmp9234\readme.txt в %ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\readme.txt
- %TEMP%\tmp9234\d528 в %ALLUSERSPROFILE%\Application Data\SnailDriver V1.17\c.y
- ClassName: 'TNRRDPKE' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''