Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'tapiEventlib' = 'rundll32.exe "<LS_APPDATA>\LibMapUI\tapiEventlib.dll",syscfgInit smpUserRpl'
- <SYSTEM32>\rundll32.exe "<LS_APPDATA>\LibMapUI\tapiEventlib.dll",syscfgInit smpUserRpl
- <SYSTEM32>\rundll32.exe "%TEMP%\tcpobjdll32.dll", syscfgInit BluetoothMainServices
- <LS_APPDATA>\LibMapUI\tapiEventlib.dll
- %TEMP%\nsb2.tmp
- %TEMP%\tcpobjdll32.dll
- %TEMP%\tcpobjdll32.dll
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'rasWIEnum' WindowName: ''