Техническая информация
- %WINDIR%\syswow64\regsvr32.exe
- iexplore.exe
- %HOMEPATH%\documents\crashrpt231603.dll
- '%WINDIR%\syswow64\regsvr32.exe'
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe'
- '%WINDIR%\syswow64\cmd.exe' /C reg add "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FortinetDLP" /t REG_SZ /d "rundll32.exe %HOMEPATH%\Documents\CrashRpt231603.dll",EntryPoint /f & exit
- '%WINDIR%\syswow64\reg.exe' add "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "FortinetDLP" /t REG_SZ /d "rundll32.exe %HOMEPATH%\Documents\CrashRpt231603.dll",EntryPoint /f