Техническая информация
- '<SYSTEM32>\ntvdm.exe' -f
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\cmd.exe' /c ""C:\Temporal\Parche.bat" "
- '<SYSTEM32>\attrib.exe' +H <Имя диска съемного носителя>:\Config.ini
- <SYSTEM32>\fcmp.exe
- C:\Temporal\fcmp.exe
- C:\Temporal\SLEEP.EXE
- <SYSTEM32>\SLEEP.EXE
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- <SYSTEM32>\sent.exe
- C:\Temporal\System-DF.ini
- C:\Temporal\Rainmeter.ini
- C:\Temporal\Config.ini
- C:\Temporal\CEF.bat
- C:\Temporal\sent.exe
- C:\Temporal\Parche.bat
- C:\Temporal\CEF.exe
- C:\Temporal\sent.exe
- C:\Temporal\Rainmeter.ini
- C:\Temporal\SLEEP.EXE
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- C:\Temporal\System-DF.ini
- C:\Temporal\fcmp.exe
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- C:\Temporal\CEF.bat
- C:\Temporal\Config.ini
- C:\Temporal\CEF.exe
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b60.b64.380001'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''