Техническая информация
- <SYSTEM32>\tasks\iis control command line utility{j33a2s3f8f4-c8a1s4h7p6z-j5f5k7k3d5}
- ClassName: 'OLLYDBG', WindowName: ''
- %APPDATA%\microsoft\windows\iis\iisreset.exe
- %APPDATA%\microsoft\windows\iis\7567746564578437586
- %APPDATA%\microsoft\windows\iis\7567746564578437586
- %APPDATA%\microsoft\windows\iis\7567746564578437586
- '%WINDIR%\syswow64\schtasks.exe' /create /F /sc minute /mo 5 /tn "IIS control command line utility{J33A2S3F8F4-C8A1S4H7P6Z-J5F5K7K3D5}" /tr "%APPDATA%\Microsoft\Windows\IIS\iisreset.exe"
- '%WINDIR%\syswow64\schtasks.exe' /Query /XML /TN "IIS control command line utility{J33A2S3F8F4-C8A1S4H7P6Z-J5F5K7K3D5}"