Техническая информация
- '<SYSTEM32>\ntvdm.exe' -f -i1
- '<SYSTEM32>\mshta.exe' "%PROGRAM_FILES%\EFQ.hta"
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %PROGRAM_FILES%\EFQ.hta
- %CommonProgramFiles%\sfbsbvy\coiome.exe
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %PROGRAM_FILES%\EFQ.hta
- %CommonProgramFiles%\sfbsbvy\coiome.exe
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-ae8.aec.380001'