Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Pre-Setting 128OMTQIe.lnk
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_Rطشy.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_خCي.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_GVMك.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_qfيс.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_Frц.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_Kن.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_اяخ.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_Oق.vbs"
- '<SYSTEM32>\wscript.exe' "%TEMP%\order_хد.vbs"
- '<SYSTEM32>\ping.exe' -n 1 www.google.com
- 'C:\Recycle.Bin\bEx\dwn_NQ.exe'
- 'C:\Recycle.Bin\bEx\dwn_wyD.exe'
- C:\Recycle.Bin\bEx\tik_mmbln.txt
- %TEMP%\order_خCي.vbs
- C:\Recycle.Bin\bEx\tik_bFrNKL.txt
- %TEMP%\order_Frц.vbs
- C:\Recycle.Bin\bEx\tik_LPhbB.txt
- %TEMP%\order_GVMك.vbs
- %TEMP%\order_Rطشy.vbs
- %TEMP%\order_qfيс.vbs
- %TEMP%\order_Oق.vbs
- C:\Recycle.Bin\bEx\wbs.txt
- C:\Recycle.Bin\bEx\dwn_wyD.exe
- C:\Recycle.Bin\sign231.txt
- C:\Recycle.Bin\wbs.txt
- %TEMP%\order_хد.vbs
- C:\Recycle.Bin\bEx\tik_OHVvb.txt
- %TEMP%\order_اяخ.vbs
- %TEMP%\order_Kن.vbs
- C:\Recycle.Bin\bEx\dwn_wyD.exe в C:\Recycle.Bin\bEx\dwn_NQ.exe
- DNS ASK www.google.com
- ClassName: 'Shell_TrayWnd' WindowName: ''