Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'winReg32' = '%HOMEPATH%\cliente.exe'
- %HOMEPATH%\reiniciar.bat
- '255.255.255.255':999
- ClassName: 'ConsoleWindowClass' WindowName: ''
- '<SYSTEM32>\cmd.exe' /c copy "%HOMEPATH%\OneDrive\Music\clienteCopia.exe" %HOMEPATH%\cliente.exe
- '<SYSTEM32>\cmd.exe' /c reg add HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v winReg32 /t REG_SZ /d "%HOMEPATH%\cliente.exe"
- '<SYSTEM32>\cmd.exe' /c copy "%HOMEPATH%\cliente.exe" %HOMEPATH%\OneDrive\Music\clienteCopia.exe
- '<SYSTEM32>\cmd.exe' /c copy contrato.exe "%HOMEPATH%\cliente.exe"
- '<SYSTEM32>\reg.exe' add HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v winReg32 /t REG_SZ /d "%HOMEPATH%\cliente.exe"