Техническая информация
- '%CommonProgramFiles%\HTML Executable Viewer\{EB2AB0F8-06BB-418C-A8DC-E1559FFEE828}\HEHVRunt.exe' -p "<Полный путь к вирусу>"
- '%CommonProgramFiles%\HTML Executable Viewer\{EB2AB0F8-06BB-418C-A8DC-E1559FFEE828}\hehvunin.exe' /RUNP
- '%TEMP%\hev1.tmp' %TEMP%\hehvrunt.exe
- ClassName: 'RegMonClass' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- %CommonProgramFiles%\HTML Executable Viewer\{EB2AB0F8-06BB-418C-A8DC-E1559FFEE828}\hehvunin.exe
- %CommonProgramFiles%\HTML Executable Viewer\{EB2AB0F8-06BB-418C-A8DC-E1559FFEE828}\hehvunin.log
- %TEMP%\hes3.tmp
- %TEMP%\184DC42A.TMP
- %CommonProgramFiles%\HTML Executable Viewer\{EB2AB0F8-06BB-418C-A8DC-E1559FFEE828}\HEHVRunt.exe
- %TEMP%\hehvrunt.exe
- %TEMP%\hev1.tmp
- %CommonProgramFiles%\HTML Executable Viewer\{EB2AB0F8-06BB-418C-A8DC-E1559FFEE828}\readme.htm
- %TEMP%\PB2.tmp
- %TEMP%\hev1.tmp
- %TEMP%\PB2.tmp
- %TEMP%\hehvrunt.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''