Техническая информация
- '<SYSTEM32>\cmd.exe' /c ping 127.0.0.1 -n 3&del /q "<Полный путь к вирусу>"
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 3
- '<SYSTEM32>\cmd.exe' /c del "%WINDIR%\mui\*.*" /f /q&del "<SYSTEM32>\config.ini" /f /q
- '<SYSTEM32>\cmd.exe' /c del "%HOMEPATH%\「开始」菜单\程序\启动\*.*" /f /q&del "%ALLUSERSPROFILE%\「开始」菜单\程序\启动\*.*" /f /q
- <SYSTEM32>\dllcache\muisetup.exe.new
- %WINDIR%\mui\muisetup.exe.new
- %WINDIR%\mui\muisetup.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''