Техническая информация
- <SYSTEM32>\ svchost.exe 324 "<Полный путь к вирусу>"
- <SYSTEM32>\netsh.exe firewall add allowedprogram RIOTBOT.exe RIOTBOT ENABLE
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: ''
- ClassName: 'RegMonClass' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- <SYSTEM32>\ svchost.exe
- <SYSTEM32>\Unit-W.dll
- <SYSTEM32>\Unit-K.dll
- <SYSTEM32>\ svchost.exe
- <SYSTEM32>\Unit-W.dll
- <SYSTEM32>\Unit-K.dll
- ClassName: 'MainClass' WindowName: '03372CEC'
- ClassName: 'ThunderRT6FormDC' WindowName: ''
- ClassName: 'ThunderRT6FormDC' WindowName: 'Shareware Cheater v 3.0'