Техническая информация
- <SYSTEM32>\tasks\googleupdate64host
- <SYSTEM32>\tasks\googleupdlauncher
- <SYSTEM32>\tasks\windowsplayer
- %ALLUSERSPROFILE%\microsoftsyncframework\rarlab.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\files.zip
- %APPDATA%\winrar\version.dat
- %ALLUSERSPROFILE%\microsoftsyncframework\googleupdlauncher.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\nvrtc64_101_0.dll
- %ALLUSERSPROFILE%\microsoftsyncframework\nvrtc-builtins64_101.dll
- %ALLUSERSPROFILE%\microsoftsyncframework\windowsplayer.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\xmrig-cuda.dll
- %ALLUSERSPROFILE%\microsoftsyncframework\config.json
- %ALLUSERSPROFILE%\microsoftsyncframework\googleupdate64host.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\googleupdlauncher.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\nvrtc64_101_0.dll
- %ALLUSERSPROFILE%\microsoftsyncframework\rarlab.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\windowsplayer.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\nvrtc-builtins64_101.dll
- %ALLUSERSPROFILE%\microsoftsyncframework\config.json
- %ALLUSERSPROFILE%\microsoftsyncframework\googleupdate64host.exe
- %ALLUSERSPROFILE%\microsoftsyncframework\xmrig-cuda.dll
- %ALLUSERSPROFILE%\microsoftsyncframework\files.zip
- ClassName: 'WinRarWindow' WindowName: ''
- '%ALLUSERSPROFILE%\microsoftsyncframework\rarlab.exe' x -o+ -p812 %ALLUSERSPROFILE%\MicrosoftSyncFramework\files.zip *.* %ALLUSERSPROFILE%\MicrosoftSyncFramework\
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn GoogleUpdate64Host /tr "C:\\ProgramData\\MicrosoftSyncFramework\GoogleUpdate64Host.exe" /st 18:22 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\schtasks.exe' /create /tn GoogleUpdate64Host /tr "C:\\ProgramData\\MicrosoftSyncFramework\GoogleUpdate64Host.exe" /st 18:22 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn Googleupdlauncher /tr "C:\\ProgramData\\MicrosoftSyncFramework\Googleupdlauncher.exe" /st 18:22 /du 9999:59 /sc daily /ri 30 /f
- '<SYSTEM32>\schtasks.exe' /create /tn Googleupdlauncher /tr "C:\\ProgramData\\MicrosoftSyncFramework\Googleupdlauncher.exe" /st 18:22 /du 9999:59 /sc daily /ri 30 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn windowsplayer /tr "C:\\ProgramData\\MicrosoftSyncFramework\windowsplayer.exe" /st 18:22 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\schtasks.exe' /create /tn windowsplayer /tr "C:\\ProgramData\\MicrosoftSyncFramework\windowsplayer.exe" /st 18:22 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn GoogleUpdate64Host /tr "C:\\ProgramData\\MicrosoftSyncFramework\GoogleUpdate64Host.exe" /st 18:23 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn Googleupdlauncher /tr "C:\\ProgramData\\MicrosoftSyncFramework\Googleupdlauncher.exe" /st 18:23 /du 9999:59 /sc daily /ri 30 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn windowsplayer /tr "C:\\ProgramData\\MicrosoftSyncFramework\windowsplayer.exe" /st 18:23 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\schtasks.exe' /create /tn GoogleUpdate64Host /tr "C:\\ProgramData\\MicrosoftSyncFramework\GoogleUpdate64Host.exe" /st 18:23 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\schtasks.exe' /create /tn windowsplayer /tr "C:\\ProgramData\\MicrosoftSyncFramework\windowsplayer.exe" /st 18:23 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\schtasks.exe' /create /tn Googleupdlauncher /tr "C:\\ProgramData\\MicrosoftSyncFramework\Googleupdlauncher.exe" /st 18:23 /du 9999:59 /sc daily /ri 30 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn windowsplayer /tr "C:\\ProgramData\\MicrosoftSyncFramework\windowsplayer.exe" /st 18:24 /du 9999:59 /sc daily /ri 10 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn Googleupdlauncher /tr "C:\\ProgramData\\MicrosoftSyncFramework\Googleupdlauncher.exe" /st 18:24 /du 9999:59 /sc daily /ri 30 /f
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn GoogleUpdate64Host /tr "C:\\ProgramData\\MicrosoftSyncFramework\GoogleUpdate64Host.exe" /st 18:24 /du 9999:59 /sc daily /ri 10 /f