Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Java(TM) Updated Scheduler' = '%APPDATA%\juscheds.exe'
- IEXPLORE.EXE
- iexplore.exe
- %APPDATA%\juscheds.exe
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MozillaWindowClass' WindowName: 'angarcl'
- ClassName: 'Chrome_WidgetWin_1' WindowName: 'angarcl'
- '<SYSTEM32>\attrib.exe' -R -S -H %APPDATA%\juscheds.exe
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE'
- '<SYSTEM32>\attrib.exe' +R +S +H %APPDATA%\juscheds.exe