Техническая информация
- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run] '367a3bc2-f997-4ac4-84c0-88090175dbb8' = '%APPDATA%\hhywc\hhywc.exe'
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] '367a3bc2-f997-4ac4-84c0-88090175dbb8' = '%APPDATA%\hhywc\hhywc.exe'
- iexplore.exe
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Associations] 'LowRiskFileTypes' = '.exe;.bat;.reg;.vbs;'
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1806' = '00000000'
- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1806' = '00000000'
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe'