Техническая информация
- '<SYSTEM32>\cmd.exe' /c timeout 5 & Del "<Полный путь к вирусу>" & exit
- [<HKCU>\Software\Microsoft\Internet Account Manager]
- [<HKCU>\Software\Microsoft\Internet Account Manager\Accounts]
- %TEMP%\PassW8.txt
- %TEMP%\Sqlite.dll
- %TEMP%\aut1.tmp
- %TEMP%\aut1.tmp
- 'sm##.gmail.com':465
- DNS ASK sm##.gmail.com
- ClassName: 'Shell_TrayWnd' WindowName: ''