Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Update' = '<SYSTEM32>\winlogs\csrss.exe'
- [<HKCU>\Software\Microsoft\Internet Explorer\Main] 'Window Title' = 'WRAAAAAAAK !!!!!!!'
- %HOMEPATH%\Desktop\Virus Remover.exe
- %HOMEPATH%\Desktop\Remover.exe
- C:\d.bmp
- %HOMEPATH%\Desktop\Spyware remover.exe
- C:\Remover.exe
- %HOMEPATH%\Desktop\winrar.exe
- C:\Open mij.exe
- ClassName: 'Indicator' WindowName: ''