Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] 'SystemDLL' = '<SYSTEM32>\Mirosoft\ExeLibary.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] 'Explorer.exe' = '<SYSTEM32>\explorer.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] 'NVIDIA Drivers' = '<SYSTEM32>\NVIDIADrivers.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SystemDLL' = '<SYSTEM32>\Mirosoft\ExeLibary.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Explorer.exe' = '<SYSTEM32>\explorer.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'NVIDIA Drivers' = '<SYSTEM32>\NVIDIADrivers.exe'
- Диспетчера задач (Taskmgr)
- Редактора реестра (RegEdit)
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %TEMP%\ykundtk
- %TEMP%\aut1.tmp
- <SYSTEM32>\hal.dll
- %TEMP%\ykundtk
- %TEMP%\aut1.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''