Техническая информация
- [<HKLM>\SOFTWARE\Classes\.exe] '' = 'jdo'
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\batchfile.bat" "
- '<SYSTEM32>\shutdown.exe' -s -t 300 -c "Fick dich du penner"
- '<SYSTEM32>\net1.exe' user %USERNAME% *Fickdich
- '<SYSTEM32>\net1.exe' user %USERNAME% /delete
- '<SYSTEM32>\shutdown.exe'
- '<SYSTEM32>\net1.exe'
- <SYSTEM32>\shutdown.exe
- <SYSTEM32>\net1.exe
- <SYSTEM32>\net.exe
- <SYSTEM32>\cmd.exe
- %TEMP%\1.tmp\batchfile.bat
- <SYSTEM32>\hal.dll