Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'igfxUpdate Module' = '"%ALLUSERSPROFILE%\Application Data\Intel\igfxupdt.exe" -run'
- [<HKLM>\SYSTEM\ControlSet001\Services\System Event Manager] 'Start' = '00000002'
- '%TEMP%\igfxtrays.exe' -reg
- '<SYSTEM32>\cmd.exe' /c %TEMP%\AUTOEXEO.bat
- '<SYSTEM32>\svchost.exe' -k "System Event Manager"
- %TEMP%\AUTOEXEO.bat
- %ALLUSERSPROFILE%\Application Data\Intel\igfxupdt.exe
- %TEMP%\igfxtrays.exe
- <SYSTEM32>\yrllnt.dll
- <SYSTEM32>\msxml15.xml
- %TEMP%\igfxtrays.exe