Техническая информация
- <SYSTEM32>\attrib.exe <DRIVERS>\etc\hosts +h
- <SYSTEM32>\attrib.exe <DRIVERS>\etc\hosts -h -r
- <SYSTEM32>\cacls.exe <DRIVERS>\etc\hosts /P everyone:F
- %TEMP%\aut3.tmp
- %WINDIR%\system\dropsoft.reg
- %TEMP%\aut4.tmp
- <SYSTEM32>\regalc.exe
- %WINDIR%\system\vvv.jpg
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- <DRIVERS>\etc\hosts
- %TEMP%\aut4.tmp
- %TEMP%\aut3.tmp
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''