Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'jg3zN7RdV' = 'control.exe "%PROGRAM_FILES%\KDUwsmKBcem\jg3zN7RdV.cpl",0,1'
- %TEMP%\setup.exe
- <SYSTEM32>\rundll32.exe Shell32.dll,Control_RunDLL "%PROGRAM_FILES%\KDUwsmKBcem\jg3zN7RdV.cpl",0,1
- <SYSTEM32>\control.exe "%PROGRAM_FILES%\KDUwsmKBcem\jg3zN7RdV.cpl",0,1
- <SYSTEM32>\rundll32.exe Shell32.dll,Control_RunDLL "%TEMP%\mGe6XpKJ3EF.dll",0,-4
- %TEMP%\gentee24\setup_temp.gea
- %TEMP%\gentee24\guig.dll
- %TEMP%\gentee24\2install - 1.bmp
- %TEMP%\setup.exe
- %TEMP%\mGe6XpKJ3EF.dll
- %TEMP%\genteert.dll
- %PROGRAM_FILES%\KDUwsmKBcem\jg3zN7RdV.cpl
- %TEMP%\mGe6XpKJ3EF.dll
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''