Техническая информация
- <SYSTEM32>\tasks\googleupdatetaskmachineqc
- %WINDIR%\explorer.exe
- %TEMP%\uoosvflshnfw.xml
- %ProgramFiles%\google\chrome\updater.exe
- %WINDIR%\temp\uoosvflshnfw.xml
- %WINDIR%\temp\edqidophfsgi.tmp
- %WINDIR%\temp\zmqlsbsnyzvq.sys
- %TEMP%\uoosvflshnfw.xml
- %WINDIR%\temp\uoosvflshnfw.xml
- %WINDIR%\temp\edqidophfsgi.tmp
- %WINDIR%\temp\edqidophfsgi.tmp
- 'pa###bin.com':443
- 'pa###bin.com':443
- DNS ASK sh####anrandom.lol
- DNS ASK pa###bin.com
- '%ProgramFiles%\google\chrome\updater.exe'
- '<SYSTEM32>\cmd.exe' /c powercfg /x -hibernate-timeout-ac 0 & powercfg /x -hibernate-timeout-dc 0 & powercfg /x -standby-timeout-ac 0 & powercfg /x -standby-timeout-dc 0
- '<SYSTEM32>\schtasks.exe' /delete /f /tn "GoogleUpdateTaskMachineQC"
- '<SYSTEM32>\powercfg.exe' /x -hibernate-timeout-ac 0
- '<SYSTEM32>\powercfg.exe' /x -hibernate-timeout-dc 0
- '<SYSTEM32>\powercfg.exe' /x -standby-timeout-ac 0
- '<SYSTEM32>\schtasks.exe' /create /f /ru "System" /tn "GoogleUpdateTaskMachineQC" /xml "%TEMP%\uoosvflshnfw.xml"
- '<SYSTEM32>\powercfg.exe' /x -standby-timeout-dc 0
- '<SYSTEM32>\schtasks.exe' /run /tn "GoogleUpdateTaskMachineQC"
- '<SYSTEM32>\schtasks.exe' /create /f /ru "System" /tn "GoogleUpdateTaskMachineQC" /xml "%WINDIR%\TEMP\uoosvflshnfw.xml"
- '%WINDIR%\explorer.exe'