Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'RAVCHDMON' = '<SYSTEM32>\RAVCHDMON.exe'
- <SYSTEM32>\RAVCHDMON.exe
- %WINDIR%\Explorer.EXE
- ClassName: 'AVP.TrafficMonConnectionTerm' WindowName: ''
- ClassName: 'AVP.Product_Notification' WindowName: ''
- ClassName: 'AVP.AlertDialog' WindowName: ''
- <SYSTEM32>\RAVCHDMON.DAT
- <SYSTEM32>\RAVCHDMON.exe
- ClassName: '#32770' WindowName: '???????????????????? - IE??????'
- ClassName: '#32770' WindowName: 'IE ????????'
- ClassName: '#32770' WindowName: '??????????????????'