Техническая информация
- '<SYSTEM32>\taskkill.exe' /f /im rfusclient.exe
- '<SYSTEM32>\taskkill.exe' /f /im "svnhost".exe
- '<SYSTEM32>\taskkill.exe' /f /im wmidata.exe
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\wget.cmd" "
- '<SYSTEM32>\taskkill.exe' /f /im anvir.exe
- '<SYSTEM32>\taskkill.exe' /f /im rutserv.exe
- %TEMP%\wget.exe
- %TEMP%\ya.url
- %TEMP%\wget.cmd
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- 'www.yo##ube.com':443
- 'localhost':1036
- DNS ASK www.yo##ube.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''