Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Skype.lnk
- '<SYSTEM32>\wscript.exe' "C:\ProgramData\WindowsTask\gpu.vbe"
- '<SYSTEM32>\wscript.exe' "C:\ProgramData\WindowsTask\cpu.vbe"
- '<SYSTEM32>\cmd.exe' /c ""C:\ProgramData\WindowsTask\cpu.bat" "
- '<SYSTEM32>\attrib.exe' +s +h C:\ProgramData\WindowsTask\*.*
- '<SYSTEM32>\cmd.exe' /c ""C:\ProgramData\WindowsTask\gpu.bat" "
- '%WINDIR%\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe' /logtoconsole=false /logfile= /u "<Полный путь к файлу>"
- '%TEMP%\4305412.blom55lgVia.exe'
- '%TEMP%\8801180.jwcryevwVia.exe'
- C:\ProgramData\WindowsTask\gpu.bat
- C:\ProgramData\WindowsTask\Data.bin
- C:\ProgramData\WindowsTask\gpu.vbe
- C:\ProgramData\WindowsTask\OpenCL.dll
- C:\ProgramData\WindowsTask\msvcr110.dll
- C:\ProgramData\WindowsTask\vsupport.exe
- %TEMP%\8801180.jwcryevwVia.exe
- %TEMP%\4305412.blom55lgVia.exe
- C:\ProgramData\WindowsTask\cpu.bat
- C:\ProgramData\WindowsTask\system.exe
- C:\ProgramData\WindowsTask\cpu.vbe
- C:\ProgramData\WindowsTask\vsupport.exe
- C:\ProgramData\WindowsTask\system.exe
- C:\ProgramData\WindowsTask\OpenCL.dll
- C:\ProgramData\WindowsTask\msvcr110.dll
- C:\ProgramData\WindowsTask\gpu.vbe
- C:\ProgramData\WindowsTask\cpu.vbe
- C:\ProgramData\WindowsTask\cpu.bat
- C:\ProgramData\WindowsTask\gpu.bat
- C:\ProgramData\WindowsTask\Data.bin
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''