Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\40rjw8r.lnk
- '<SYSTEM32>\rundll32.exe' %TEMP%\r8wjr04.jss,CCZ4
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\r8wjr04.jss,CCZ0
- %ALLUSERSPROFILE%\Application Data\40rjw8r.fee
- %TEMP%\r8wjr04.jss
- %ALLUSERSPROFILE%\Application Data\r8wjr04.jss