Техническая информация
- %WINDIR%\Tasks\At4.job
- %WINDIR%\Tasks\At5.job
- %WINDIR%\Tasks\At3.job
- %WINDIR%\Tasks\At1.job
- %WINDIR%\Tasks\At2.job
- %TEMP%\nsu3.tmp\ns7.tmp <SYSTEM32>\cmd.exe /C at 20:20 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\hjavaw.exe""
- %TEMP%\nsu3.tmp\ns8.tmp <SYSTEM32>\cmd.exe /C at 20:20 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\dlmclient.exe""
- %TEMP%\nsu3.tmp\ns6.tmp <SYSTEM32>\cmd.exe /C at 20:15 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\fgccsrt.exe""
- %TEMP%\nsu3.tmp\ns4.tmp <SYSTEM32>\cmd.exe /C at 20:05 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\dphostw.exe""
- %TEMP%\nsu3.tmp\ns5.tmp <SYSTEM32>\cmd.exe /C at 20:10 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\drwebcom.exe""
- <SYSTEM32>\at.exe 20:20 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\hjavaw.exe""
- <SYSTEM32>\at.exe 20:20 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\dlmclient.exe""
- <SYSTEM32>\at.exe 20:15 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\fgccsrt.exe""
- <SYSTEM32>\at.exe 20:05 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\dphostw.exe""
- <SYSTEM32>\at.exe 20:10 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\drwebcom.exe""
- %WINDIR%\fgccsrt.exe
- %WINDIR%\hjavaw.exe
- %WINDIR%\dlmclient.exe
- %TEMP%\nsn2.tmp
- %WINDIR%\dphostw.exe
- %WINDIR%\drwebcom.exe
- %WINDIR%\hjavaw.exe
- %WINDIR%\dlmclient.exe
- %WINDIR%\fgccsrt.exe
- %WINDIR%\dphostw.exe
- %WINDIR%\drwebcom.exe