Техническая информация
- '<SYSTEM32>\schtasks.exe' /create /sc onlogon /tn "Clean" /rl highest /tr "'%ProgramFiles%\AntivirusFolder\Antivirus.exe' /startup" /f
- <SYSTEM32>\svchost.exe
- %TEMP%\-911661856_1300.jpg
- %TEMP%\pengyou.html
- %TEMP%\settings
- %TEMP%\forms
- %TEMP%\nsc3.tmp\System.dll
- %ProgramFiles%\AntivirusFolder\Antivirus.exe
- %TEMP%\quwen
- %TEMP%\PJ5O6poEvSjXNgN2xATlYkJOz6L.6IYV
- %TEMP%\style1517264871.css
- %TEMP%\footer.js
- %TEMP%\nse2.tmp
- %TEMP%\faq1
- %TEMP%\favicon-194x194.png
- %TEMP%\-1557263243_0942.jpg
- %TEMP%\Captura+de+pantalla+2012-03-24+a+las+13.58.25.png
- %TEMP%\Twitter-icon.png
- 'localhost':7579
- '18#.#4.181.72':7579
- ClassName: 'Shell_TrayWnd' WindowName: ''