Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] 'scvhost' = '"%TEMP%\cp64\run.exe"'
- '%TEMP%\cp64\run.exe'
- '%WINDIR%\explorer.exe'
- %WINDIR%\explorer.exe
- %TEMP%\cp64\zlib1.dll
- %TEMP%\dw.log
- %TEMP%\254FC.dmp
- %TEMP%\cp64\svchost.exe
- %TEMP%\cp64\libcurl.dll
- %TEMP%\cp64\pthreadGC2.dll
- %TEMP%\cp64\run.exe
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'