Техническая информация
- '<SYSTEM32>\systeminfo.exe'
- '%TEMP%\4195.exe'
- '%TEMP%\599.exe'
- '<SYSTEM32>\cmd.exe' /C SYSTEMINFO && SYSTEMINFO && SYSTEMINFO && SYSTEMINFO && SYSTEMINFO && DEL "%TEMP%\599.exe"
- %WINDIR%\Explorer.EXE
- %TEMP%\4195.exe
- %TEMP%\bm3.tmp
- %TEMP%\nsk2.tmp
- %TEMP%\599.exe
- %TEMP%\4195.exe
- %TEMP%\599.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''