Техническая информация
- '<SYSTEM32>\reg.exe' add "HKEY_CURRENT_USER\SoftWarE\Microsoft\WinDOWS\CurrEntVErsion\IntErnEt SEttings" /v "SErvErInfoTimEOut" /t "REG_DWORD" /d "0" /f
- '<SYSTEM32>\attrib.exe' -r -a -s -h <DRIVERS>\Etc\hOsts
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\nwe.bat" "
- '<SYSTEM32>\reg.exe' add "HKEY_CURRENT_USER\SoftWarE\Microsoft\WinDOWS\CurrEntVErsion\IntErnEt SEttings" /v "DnsCachETimEout" /t "REG_DWORD" /d "0" /f
- ClassName: 'OLLYDBG' WindowName: '(null)'
- ClassName: 'FileMonClass' WindowName: '(null)'
- %TEMP%\1.tmp\nwe.bat
- %TEMP%\1.tmp\nwe.bat
- ClassName: '18467-41' WindowName: '(null)'