Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SetUp' = '<SYSTEM32>\winminer.exe'
- '<SYSTEM32>\cmd.exe' /c title :.Virus.:
- <SYSTEM32>\winminer.exe
- ClassName: '' WindowName: 'Command Prompt'
- ClassName: '' WindowName: 'Registry Editor'
- ClassName: '' WindowName: ':.Virus.:'
- ClassName: '' WindowName: 'Windows Task Manager'