Техническая информация
- <SYSTEM32>\cmd.exe
- %TEMP%\aut2.tmp
- %TEMP%\One.mp3
- %TEMP%\aut1.tmp
- %TEMP%\MicrosoftOS.exe
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- '20#.#32.50.158':443
- ClassName: '' WindowName: ''
- ClassName: '\MSITPro::EventQueue' WindowName: ''
- ClassName: 'Type32_Main_Window' WindowName: ''
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'WMP9DeskBand' WindowName: 'WMP9DeskBand'
- ClassName: 'WMPlayerApp' WindowName: ''
- '%TEMP%\MicrosoftOS.exe'
- '%ProgramFiles%\Windows Media Player\wmplayer.exe' /prefetch:6 /Play "%TEMP%\One.mp3"
- '<SYSTEM32>\cmd.exe' /c %TEMP%\One.mp3
- '<SYSTEM32>\cmd.exe' /c %TEMP%\MicrosoftOS.exe