Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'taskhost.exe' = '"\System32\taskhost.exe.exe"'
- 'C:\System32\taskhost.exe.exe'
- '%TEMP%\Project.exe'
- '<SYSTEM32>\ping.exe' 0
- %TEMP%\RCX1.tmp
- %TEMP%\201.ine
- C:\System32\taskhost.exe.exe
- C:\System32\taskhost.exe.exe
- %TEMP%\Project.exe
- %TEMP%\RCX1.tmp в %TEMP%\Project.exe
- %TEMP%\201.ine в %TEMP%\Project.exe
- ClassName: 'Indicator' WindowName: ''