Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\4rjlcahmq.lnk
- '<SYSTEM32>\rundll32.exe' %TEMP%\qmhacljr4.jss,GGF4
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\qmhacljr4.jss,GGF0
- %ALLUSERSPROFILE%\Application Data\4rjlcahmq.fee
- %TEMP%\qmhacljr4.jss
- %ALLUSERSPROFILE%\Application Data\qmhacljr4.jss