Техническая информация
- <SYSTEM32>\tasks\î¢èГéý¼¶
- lsass.exe
- C:\users\lsass.exe
- C:\users\md5.png
- C:\users\autoip.exe
- '20#.#8.105.174':8000
- ClassName: 'CTXOPConntion_Class' WindowName: ''
- 'C:\users\lsass.exe'
- '%WINDIR%\syswow64\cmd.exe' /c cmd.exe /c SCHTASKS /Create /SC ONSTART /TN ГЋВўГ€ГÉý¼¶ /TR C:\Users\lsass.exe' (со скрытым окном)
- '%WINDIR%\syswow64\cmd.exe' /c cmd.exe /c SCHTASKS /Create /SC ONSTART /TN ГЋВўГ€ГÉý¼¶ /TR C:\Users\lsass.exe
- '%WINDIR%\syswow64\cmd.exe' /c SCHTASKS /Create /SC ONSTART /TN ГЋВўГ€ГÉý¼¶ /TR C:\Users\lsass.exe
- '%WINDIR%\syswow64\schtasks.exe' /Create /SC ONSTART /TN ГЋВўГ€ГÉý¼¶ /TR C:\Users\lsass.exe