Техническая информация
- %PROGRAM_FILES%\skdjfd\ccabs.cmd
- C:\wmpub\wmiislog\ccabs.exe
- <SYSTEM32>\taskkill.exe /f /im ctfmon.exe
- <SYSTEM32>\wbem\wmiadap.exe /R /T
- <SYSTEM32>\wscript.exe "C:\wmpub\wmiisslog\lead.vbs"
- C:\wmpub\wmiisslog\iead.exe
- C:\wmpub\wmiisslog\ctfmon.exe.exe
- C:\wmpub\wmiisslog\ieqidong.exe
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- C:\wmpub\wmiisslog\jieshuctfmon.vbs
- C:\wmpub\wmiisslog\jieshuctfmon.bat
- C:\wmpub\wmiisslog\lead.bat
- %PROGRAM_FILES%\skdjfd\ccabs.cmd
- C:\wmpub\wmiislog\ccabs.exe
- C:\wmpub\wmiisslog\gai.exe
- C:\wmpub\wmiisslog\vbspc.exe
- C:\wmpub\wmiisslog\lead.vbs
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''