Техническая информация
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %PROGRAM_FILES%\guests\guests\f1aec2a53c20.jpg
- %PROGRAM_FILES%\guests\guests\f1aec2a53c20.jpg
- %HOMEPATH%\Recent\f1aec2a53c20.lnk
- %HOMEPATH%\Recent\guests.lnk
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- <DRIVERS>\etc\hоsts
- %TEMP%\$inst\temp_0.tmp
- <DRIVERS>\etc\hosts
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'xernya'