Техническая информация
- ClassName: 'OLLYDBG', WindowName: ''
- ClassName: 'GBDYLLO', WindowName: ''
- ClassName: 'pediy06', WindowName: ''
- ClassName: 'FilemonClass', WindowName: ''
- ClassName: '', WindowName: 'File Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- ClassName: '', WindowName: 'Process Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'RegmonClass', WindowName: ''
- ClassName: '', WindowName: 'Registry Monitor - Sysinternals: www.sysinternals.com'
- %TEMP%\1.tmp\2.bat
- %TEMP%\1.tmp\1.exe
- %TEMP%\1.tmp\settings.ini
- C:\CacheData\Flash\1.exe
- C:\CacheData\1.exe
- C:\CacheData\Cache\settings.ini
- %TEMP%\aut4.tmp
- C:\CacheData\Cache\Prog.exe
- %TEMP%\~bkkzevb.bat
- C:\CacheData\Cache\Program.exe
- %TEMP%\aut4.tmp
- %TEMP%\1.tmp\2.bat
- ClassName: '18467-41' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- '%TEMP%\1.tmp\1.exe'
- 'C:\CacheData\Cache\Prog.exe' -pasAZZDSfcdsdrQWERХ]d[sfdtg
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\2.bat" <Полный путь к файлу>"
- '<SYSTEM32>\cmd.exe' /c %TEMP%\~bkkzevb.bat