Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Registery Key' = '%APPDATA%\Folder\Filename.exe'
- %APPDATA%\Folder\Filename.exe
- <SYSTEM32>\ping.exe 1.1.1.1 -n 1 -w 1000
- ICQ.exe
- %APPDATA%\Folder\Filename.exe
- %APPDATA%\Folder\Filename.exe
- ClassName: 'Indicator' WindowName: ''