Техническая информация
- <SYSTEM32>\taskkill.exe /f /im Safari.exe
- <SYSTEM32>\taskkill.exe /f /im firefox.exe
- <SYSTEM32>\reg.exe add hklm\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v mdm /t reg_sz /d
- <SYSTEM32>\taskkill.exe /f /im iexplore.exe
- <SYSTEM32>\taskkill.exe /f /im chrome.exe
- <SYSTEM32>\taskkill.exe /f /im opera.exe
- opera.exe
- firefox.exe
- iexplore.exe
- chrome.exe
- <SYSTEM32>\arst.bin
- 'hi##ado.com':80
- hi##ado.com/myip/
- DNS ASK hi##ado.com
- ClassName: '' WindowName: ''
- ClassName: 'ConsoleWindowClass' WindowName: ''