Техническая информация
- C:\Extracted\3.EXE
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen C:\Extracted\K5Z7UUCAPM899RCAABYRUHCAHOG147CACHVJPRCAY9MLDVCAZ2DP0ICA3CT6UICADZKVNVCA1K7ZNJCAILVM8ZCAQMEBJRCAESX57ACAUWJQCSCA03Z8PKCAFYZ9KYCAW436GICA9RQ9W0CA6Q4JU3CA30RUDL.jpg
- %APPDATA%\addon.dat
- %HOMEPATH%\Recent\K5Z7UUCAPM899RCAABYRUHCAHOG147CACHVJPRCAY9MLDVCAZ2DP0ICA3CT6UICADZKVNVCA1K7ZNJCAILVM8ZCAQMEBJRCAESX57ACAUWJQCSCA03Z8PKCAFYZ9KYCAW436GICA9RQ9W0CA6Q4JU3CA30RUDL.lnk
- %HOMEPATH%\Recent\Extracted.lnk
- %TEMP%\sfx.ini
- C:\Extracted\K5Z7UUCAPM899RCAABYRUHCAHOG147CACHVJPRCAY9MLDVCAZ2DP0ICA3CT6UICADZKVNVCA1K7ZNJCAILVM8ZCAQMEBJRCAESX57ACAUWJQCSCA03Z8PKCAFYZ9KYCAW436GICA9RQ9W0CA6Q4JU3CA30RUDL.jpg
- C:\Extracted\3.EXE
- %TEMP%\sfx.ini
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''
- ClassName: '' WindowName: ''