Техническая информация
- %WINDIR%\tasks\gamer.bat
- '<SYSTEM32>\cmd.exe' /c %WINDIR%\Tasks\gamer.bat
- '<LOCALNET>.49.62':80
- '<SYSTEM32>\cmd.exe' /c %WINDIR%\Tasks\gamer.bat' (со скрытым окном)
- '<SYSTEM32>\certutil.exe' -decode %WINDIR%\Tasks\GamerGame.txt %WINDIR%\Tasks\GamerGame.exe
- '<SYSTEM32>\certutil.exe' -decode %WINDIR%\Tasks\GamingGamer.txt %WINDIR%\Tasks\System.Management.Automation.dll
- '%WINDIR%\microsoft.net\framework64\v4.0.30319\installutil.exe' /logfile= /LogToConsole=true /U %WINDIR%\Tasks\GamerGame.exe