Техническая информация
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 2
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 1200
- '<SYSTEM32>\cmd.exe' /c ""%PROGRAM_FILES%\win.bat" "
- '<SYSTEM32>\find.exe' "sahjoanasnjoasnjoasn.sys"
- %PROGRAM_FILES%\tasklist.exe
- %PROGRAM_FILES%\wget.exe
- %PROGRAM_FILES%\sc.exe
- %PROGRAM_FILES%\taskkill.exe
- %TEMP%\HZ~1.tmp.bat
- %PROGRAM_FILES%\dir.txt
- %PROGRAM_FILES%\libeay32.dll
- %PROGRAM_FILES%\libssl32.dll
- %PROGRAM_FILES%\mssql.bat
- %PROGRAM_FILES%\mysql.bat
- %PROGRAM_FILES%\del.bat
- %PROGRAM_FILES%\killer.bat
- %PROGRAM_FILES%\cacls.exe
- %PROGRAM_FILES%\net.exe
- %PROGRAM_FILES%\win.bat
- %PROGRAM_FILES%\yjzj.bat
- %PROGRAM_FILES%\dir.txt
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'