Техническая информация
- '<SYSTEM32>\attrib.exe' +r +s <DRIVERS>\etc\hosts
- '<SYSTEM32>\attrib.exe' +r +s <DRIVERS>\etc\hosts.ics
- '<SYSTEM32>\taskkill.exe' /f /t /im iexplore.exe
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\del.bat" "<Текущая директория>\""
- '<SYSTEM32>\attrib.exe' -R -a -S -H <DRIVERS>\Etc\HOStS
- '<SYSTEM32>\attrib.exe' -R -a -S -H <DRIVERS>\Etc\HOStS.ics
- iexplore.exe
- %TEMP%\1.tmp\del.bat
- <DRIVERS>\etc\hosts
- %TEMP%\1.tmp\del.bat
- %WINDIR%\Temp\Perflib_Perfdata_7e8.dat
- <DRIVERS>\etc\HoSts.ics
- ClassName: '(null)' WindowName: '(null)'