Техническая информация
- '<SYSTEM32>\taskkill.exe' /f /im MosaikSetting.exe
- %WINDIR%\MicrosoftSetting\metka.ini
- %TEMP%\7ZipSfx.000\system.ini
- %TEMP%\7ZipSfx.000\metka.ini
- %TEMP%\7ZipSfx.000\mosaik.cmd
- %TEMP%\7ZipSfx.000\MosaikSetting.exe
- ClassName: '' WindowName: ''
- '<SYSTEM32>\cmd.exe' /c vol c:
- '<SYSTEM32>\systeminfo.exe'
- '<SYSTEM32>\find.exe' "Microsoft Windows XP"
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\7ZipSfx.000\mosaik.cmd" "
- '<SYSTEM32>\cmd.exe' /S /D /c" ver "