Техническая информация
- 'C:\users\public\svchost32.exe'
- %WINDIR%\explorer.exe
- addinprocess32.exe
- C:\users\public\svchost32.exe
- %TEMP%\addinprocess32.exe
- %TEMP%\addinprocess32.exe
- http://14#.#1.241.103/V4/12306178.jpg
- '%TEMP%\addinprocess32.exe'
- '%WINDIR%\syswow64\cmmon32.exe'
- '%WINDIR%\syswow64\cmd.exe' del "%TEMP%\AddInProcess32.exe"