Техническая информация
- <SYSTEM32>\rundll32.exe user32,SwapMouseButton
- <SYSTEM32>\netsh.exe firewall set opmode disable
- <SYSTEM32>\cmd.exe /c ""%TEMP%\1.tmp\batchfile.bat" "
- <SYSTEM32>\reg.exe add HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_SZ /d 1 /f
- C:\901.txt
- C:\23906.txt
- C:\16697.txt
- C:\1041.txt
- C:\17243.txt
- C:\11842.txt
- C:\843.txt
- C:\7886.txt
- C:\21204.txt
- C:\19937.txt
- C:\9089.txt
- C:\2269.txt
- C:\16995.txt
- C:\21370.txt
- C:\27937.txt
- C:\7697.txt
- C:\864.txt
- C:\19720.txt
- C:\20834.txt
- C:\11759.txt
- C:\1290.txt
- C:\20701.txt
- C:\25590.txt
- C:\2824.txt
- C:\24888.txt
- C:\12429.txt
- C:\2894.txt
- C:\31305.txt
- C:\30481.txt
- C:\6.txt
- C:\18957.txt
- %TEMP%\1.tmp\batchfile.bat
- C:\23378.txt
- C:\28181.txt
- C:\15631.txt
- C:\24600.txt
- C:\5236.txt
- C:\27534.txt
- C:\6192.txt
- C:\25795.txt
- C:\14096.txt
- C:\28428.txt
- C:\16161.txt
- C:\27737.txt
- C:\16664.txt
- C:\22775.txt
- C:\18371.txt