Техническая информация
- <SYSTEM32>\net1.exe user %USERNAME% crwth231
- <SYSTEM32>\rundll32.exe USER32.DLL,SwapMouseButton
- <SYSTEM32>\attrib.exe +h "%HOMEPATH%\Videos"
- <SYSTEM32>\tskill.exe notepad
- <SYSTEM32>\tskill.exe calc
- <SYSTEM32>\attrib.exe +h "%TEMP%\1.tmp\Virus.bat"
- <SYSTEM32>\attrib.exe +h "%HOMEPATH%\Documents"
- <SYSTEM32>\attrib.exe +h "%HOMEPATH%\my documents"
- <SYSTEM32>\cmd.exe /c ""%TEMP%\1.tmp\Virus.bat" "
- <SYSTEM32>\attrib.exe +h "%HOMEPATH%\Music"
- <SYSTEM32>\attrib.exe +h "%HOMEPATH%\Pictures"
- <SYSTEM32>\attrib.exe +h "%HOMEPATH%\Downloads"
- %HOMEPATH%\csrss.exe
- %TEMP%\1.tmp\Virus.bat
- %TEMP%\1.tmp\Virus.bat
- <SYSTEM32>\calc.exe
- <SYSTEM32>\notepad.exe
- <SYSTEM32>\kernel32.dll
- %HOMEPATH%\csrss.exe
- <SYSTEM32>\hal.dll