Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Cons0le.exe' = '%WINDIR%\dell\Cons0le.exe'
- %WINDIR%\dell\Svchost.exe
- %WINDIR%\dell\Update64.exe
- %WINDIR%\dell\Cons0le.exe
- %WINDIR%\dell\version.json
- %WINDIR%\dell\run.bat
- C:\runtime\DiverInstaller.exe
- '<SYSTEM32>\cmd.exe' /c %WINDIR%\dell\run.bat
- '%WINDIR%\explorer.exe' <PATH_SAMPLE>
- '<SYSTEM32>\ping.exe' -n 4 127.0.0.1