Техническая информация
- '<SYSTEM32>\taskkill.exe' /f /t /im IDMan.exe
- '<SYSTEM32>\taskkill.exe' /f /t /im IEMonitor.exe
- %TEMP%\8HAOBB93.bat
- ClassName: '' WindowName: ''
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\8HAOBB93.bat" <Полный путь к файлу>"
- '<SYSTEM32>\reg.exe' query "HKU\S-1-5-19\Environment"
- '<SYSTEM32>\reg.exe' add "HKLM\SOFTWARE\Internet Download Manager" /v "AdvIntDriverEnabled2" /t REG_DWORD /d "1" /f
- '<SYSTEM32>\reg.exe' add "HKLM\SOFTWARE\Internet Download Manager" /v "FName" /t REG_SZ /d "IDM" /f
- '<SYSTEM32>\reg.exe' add "HKLM\SOFTWARE\Internet Download Manager" /v "Serial" /t REG_SZ /d "HE3TB-8J3SY-FP9SC-6RKR2" /f