Техническая информация
- '%WINDIR%\syswow64\taskkill.exe' /F /pid 2804
- %ALLUSERSPROFILE%\imejp10\imjpuex.exe
- %ALLUSERSPROFILE%\imejp10\imjputyc.dll
- %ALLUSERSPROFILE%\imejp10\config.dat
- %ALLUSERSPROFILE%\imejp10\t1.dat
- <SYSTEM32>\mstracer.dll
- %TEMP%\del.bat
- '<LOCALNET>.1.100':8100
- ClassName: '' WindowName: ''
- '%ALLUSERSPROFILE%\imejp10\imjpuex.exe' Config.dat [512] 2804
- '%WINDIR%\syswow64\cmd.exe' /c "%TEMP%\del.bat"' (со скрытым окном)
- '%WINDIR%\syswow64\cmd.exe' /c "%TEMP%\del.bat"
- '%WINDIR%\syswow64\ping.exe' 127.0.0.1