Техническая информация
- '<SYSTEM32>\taskkill.exe' /F /IM chrome.exe
- '<SYSTEM32>\taskkill.exe' /F /IM iexplore.exe
- '<SYSTEM32>\taskkill.exe' /F /IM firefox.exe
- chrome.exe
- iexplore.exe
- firefox.exe
- %HOMEPATH%\Desktop\Delete.bat
- %HOMEPATH%\Desktop\Start.Vbs
- %HOMEPATH%\Desktop\DarkBot.exe
- %WINDIR%\Temp\Perflib_Perfdata_7e8.dat
- ClassName: '' WindowName: ''
- '<SYSTEM32>\wscript.exe' "%HOMEPATH%\Desktop\Start.Vbs"
- '<SYSTEM32>\cmd.exe' /c DarkBot.exe
- '<SYSTEM32>\cmd.exe' /c Delete.bat
- '<SYSTEM32>\rundll32.exe' InetCpl.cpl,ClearMyTracksByProcess 8