Техническая информация
- '<SYSTEM32>\mshta.exe' "%TEMP%\VSNXSOUANTK128GB.hta"
- '<SYSTEM32>\rundll32.exe' kernel32,Sleep
- '<SYSTEM32>\wscript.exe' ntk128gb.vbs /NOUAC
- <SYSTEM32>\rundll32.exe
- %TEMP%\7ZipSfx.000\xpsp1hal\halacpi.dll
- %TEMP%\7ZipSfx.000\xpsp1hal\halaacpi.dll
- %TEMP%\7ZipSfx.000\xpsp1hal\hal.dll
- %TEMP%\7ZipSfx.000\xpsp1hal\halmps.dll
- %TEMP%\7ZipSfx.000\xpsp1hal\halmacpi.dll
- %TEMP%\7ZipSfx.000\xpsp1hal\halapic.dll
- %TEMP%\7ZipSfx.000\utils\signtool.exe
- %TEMP%\7ZipSfx.000\ntk128gb.vbs
- %TEMP%\7ZipSfx.000\utils\main.c
- %TEMP%\7ZipSfx.000\i.ico
- %TEMP%\7ZipSfx.000\utils\PatchPae2.exe
- %TEMP%\7ZipSfx.000\utils\makecert.exe
- %TEMP%\7ZipSfx.000\utils\certmgr.exe
- %TEMP%\VSNXSOUANTK128GB.hta
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'HTML Application Host Window Class' WindowName: ''