Техническая информация
- %WINDIR%\Temp1.exe
- %WINDIR%\explorer.exe
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %WINDIR%\Temp0.jpg
- %ALLUSERSPROFILE%\user.dat
- %HOMEPATH%\Recent\Temp0.lnk
- %HOMEPATH%\Recent\WINDOWS.lnk
- %WINDIR%\Temp0.jpg
- %WINDIR%\Temp1.exe
- %WINDIR%\msacm32.drv
- %WINDIR%\Temp1.exe
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'BaseBar' WindowName: 'ChanApp'
- ClassName: 'CSCHiddenWindow' WindowName: ''
- ClassName: 'SystemTray_Main' WindowName: ''
- ClassName: 'Proxy Desktop' WindowName: ''
- ClassName: '_CLS_SessionAgent' WindowName: '_CLS_SessionAgent'
- ClassName: 'rsccenter' WindowName: 'cc'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''