Техническая информация
- '<SYSTEM32>\schtasks.exe' /create /sc onlogon /tn "JavaUpdater" /rl highest /tr "'%ProgramFiles%\Java (TM) Platform\JavaUpdater.exe' /startup" /f
- '%TEMP%\chrome.exe'
- <SYSTEM32>\svchost.exe
- %ProgramFiles%\Java (TM) Platform\JavaUpdater.exe
- %TEMP%\iXf
- %TEMP%\chrome.exe
- 'pa#####quad.duckdns.org':2021
- DNS ASK pa#####quad.duckdns.org