Техническая информация
- '%PROGRAM_FILES%\Internet Explorer\test.exe'
- '<SYSTEM32>\taskkill.exe' /F /IM test.exe
- '<SYSTEM32>\cmd.exe' /c "%PROGRAM_FILES%\Internet Explorer\test.exe.bat"
- '<SYSTEM32>\regsvr32.exe' /c /s <SYSTEM32>\PHQGHU.dll
- %TEMP%\tmp.tmp
- <SYSTEM32>\PHQGHU.dll
- %PROGRAM_FILES%\Internet Explorer\test.exe
- %PROGRAM_FILES%\Internet Explorer\1.wmv
- %PROGRAM_FILES%\Internet Explorer\test.exe
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''