Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'HKCU' = ''
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{8N6RI45I-4Q78-O878-SF34-W2E0200H83VG}] 'StubPath' = '<SYSTEM32>\install\elis.exe Restart'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'HKLM' = ''
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run] 'Policies' = ''
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] 'Policies' = ''
- '<SYSTEM32>\install\elis.exe' Restart
- '<SYSTEM32>\dumprep.exe' 2804 -dm 7 7 %TEMP%\WER702d.dir00\explorer.exe.mdmp 16325836412027172
- '<SYSTEM32>\dumprep.exe' 2968 -dm 7 7 %TEMP%\WERaaa5.dir00\explorer.exe.mdmp 16325836412027172
- '<SYSTEM32>\dumprep.exe' 1408 -dm 7 7 %TEMP%\WER4297.dir00\explorer.exe.mdmp 16325836412028048
- '%WINDIR%\explorer.exe'
- %WINDIR%\Explorer.EXE
- %TEMP%\WER4297.dir00\explorer.exe.mdmp
- %TEMP%\WERaaa5.dir00\explorer.exe.mdmp
- <SYSTEM32>\install\elis.exe
- %TEMP%\%USERNAME%2.txt
- <SYSTEM32>\install\elis.exe
- ClassName: 'Proxy Desktop' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'