Техническая информация
- <SYSTEM32>\at.exe 19:46 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\lksi.exe""
- <SYSTEM32>\at.exe 19:50 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\hpci.exe""
- <SYSTEM32>\at.exe 19:42 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\pstc.exe""
- <SYSTEM32>\at.exe 19:34 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\chdc.exe""
- <SYSTEM32>\at.exe 19:38 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\ipss.exe""
- %TEMP%\nsn3.tmp\ns5.tmp
- %TEMP%\nsn3.tmp\ns4.tmp
- %TEMP%\nsn3.tmp\nsExec.dll
- %TEMP%\nsn3.tmp\ns8.tmp
- %TEMP%\nsn3.tmp\ns7.tmp
- %TEMP%\nsn3.tmp\ns6.tmp
- %WINDIR%\ipss.exe
- %WINDIR%\chdc.exe
- %TEMP%\nsc2.tmp
- %WINDIR%\hpci.exe
- %WINDIR%\lksi.exe
- %WINDIR%\pstc.exe
- %WINDIR%\lksi.exe
- %WINDIR%\hpci.exe
- %WINDIR%\pstc.exe
- %WINDIR%\chdc.exe
- %WINDIR%\ipss.exe
- %TEMP%\nsn3.tmp\ns7.tmp
- %TEMP%\nsn3.tmp\ns8.tmp
- %TEMP%\nsn3.tmp\nsExec.dll
- %TEMP%\nsn3.tmp\ns4.tmp
- %TEMP%\nsn3.tmp\ns5.tmp
- %TEMP%\nsn3.tmp\ns6.tmp