Техническая информация
- <SYSTEM32>\at.exe 17:00 /every:M,T,W,Th,F,Sa,Su """%TEMP%\1gpresulta.exe"""
- %TEMP%\nsv3.tmp\nsExec.dll
- %TEMP%\nsv3.tmp\ns4.tmp
- %TEMP%\AutoRun.exe
- %TEMP%\nsk2.tmp
- %TEMP%\1gpresulta.exe
- %TEMP%\AutoRun.exe
- %TEMP%\1gpresulta.exe
- %TEMP%\nsv3.tmp\nsExec.dll
- %TEMP%\nsv3.tmp\ns4.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''