Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Skype' = '"%APPDATA%\Skype\Phone\Skype.exe" /nosplash /minimized'
- '%TEMP%\5707.exe'
- '%TEMP%\5953.exe'
- '<SYSTEM32>\systeminfo.exe'
- %APPDATA%\Skype\Phone\Skype.exe
- %TEMP%\5707.exe
- %TEMP%\bm3.tmp
- %TEMP%\nsm2.tmp
- %TEMP%\5953.exe
- %APPDATA%\Microsoft\Sze\hqhmp
- %TEMP%\5953.exe
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'BCS_STOP_EVENT_FORCE' WindowName: 'Rx AGC-Gain: %x'
- ClassName: 'VESA DMT ' WindowName: 'VESA DMT '