Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Windows_ID400300' = '"%ALLUSERSPROFILE%\taskhos.exe"'
- %HOMEPATH%\Start Menu\Programs\Startup\Microsoft security.exe
- '%ALLUSERSPROFILE%\taskhos.exe'
- <LS_APPDATA>\djtdrjtdrjt\taskhos.exe_Url_xd2gqhrf5k5yilz0o34b3e0h30btgl2e\1.0.0.0\vfqlzokb.newcfg
- %ALLUSERSPROFILE%\taskhos.exe
- <LS_APPDATA>\djtdrjtdrjt\taskhos.exe_Url_xd2gqhrf5k5yilz0o34b3e0h30btgl2e\1.0.0.0\vfqlzokb.newcfg в <LS_APPDATA>\djtdrjtdrjt\taskhos.exe_Url_xd2gqhrf5k5yilz0o34b3e0h30btgl2e\1.0.0.0\user.config
- ClassName: 'Shell_TrayWnd' WindowName: ''