Техническая информация
- <SYSTEM32>\reg.exe add HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v PWNAGE /t REG_SZ /d <DRIVERS>\New Folder.exe /f
- <SYSTEM32>\taskkill.exe /f /im Application.exe
- <SYSTEM32>\rundll32.exe user32,SwapMouseButton
- <SYSTEM32>\cmd.exe /c """%TEMP%\Untitled1.bat"""
- <SYSTEM32>\reg.exe add HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_SZ /d 1 /f
- C:\28096.txt
- C:\5436.txt
- C:\12930.txt
- C:\26107.txt
- C:\28130.txt
- C:\3243.txt
- C:\3348.txt
- C:\9976.txt
- C:\3186.txt
- C:\29291.txt
- C:\22435.txt
- C:\8452.txt
- C:\21474.txt
- C:\29506.txt
- C:\14434.txt
- C:\27126.txt
- C:\23096.txt
- C:\15480.txt
- C:\11608.txt
- C:\8614.txt
- C:\26231.txt
- C:\16545.txt
- C:\2362.txt
- C:\5709.txt
- C:\8343.txt
- C:\5569.txt
- C:\29950.txt
- C:\25082.txt
- C:\25702.txt
- C:\12413.txt
- C:\19884.txt
- C:\2550.txt
- C:\14834.txt
- C:\7411.txt
- %TEMP%\Untitled1.bat
- C:\24059.txt
- C:\8963.txt
- C:\26467.txt
- C:\3349.txt
- C:\29239.txt
- C:\6272.txt
- C:\28460.txt
- C:\18311.txt
- C:\19449.txt
- C:\11269.txt
- C:\23009.txt
- C:\2214.txt
- C:\22013.txt
- C:\24235.txt
- C:\20221.txt
- C:\28374.txt
- ClassName: '' WindowName: ''