Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\WinInetDriver.url
- %TEMP%\a54bb.exe
- %TEMP%\Proxy Grabber beta.exe
- %TEMP%\tmp1.tmp
- %ALLUSERSPROFILE%\Application Data\{ff453e-3d7aac-362f-05600bb34250}\hostdl.exe
- %ALLUSERSPROFILE%\Application Data\{ff453e-3d7aac-362f-05600bb34250}\hostdl.exe
- '%TEMP%\a54bb.exe'
- '<SYSTEM32>\schtasks.exe' /create /tn WinInetDriver /tr %ALLUSERSPROFILE%\Application Data\{ff453e-3d7aac-362f-05600bb34250}\hostdl.exe /sc minute /F