Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'dervi' = '%WINDIR%\dervi.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'kity' = '%WINDIR%\kity.exe'
- %WINDIR%\dervi.exe
- %WINDIR%\kity.exe
- %WINDIR%\dervi.exe
- %WINDIR%\kity.exe
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'F1S122GA:O14V:214F:ED1A:K1A1A18Z118B'