Техническая информация
- %WINDIR%\Tasks\AntivirUpdate.job
- [<HKLM>\SYSTEM\ControlSet001\Services\Schedule] 'Start' = '00000002'
- <SYSTEM32>\schtasks.exe /Create /SC onlogon /TN AntivirUpdate /tr "%WINDIR%\msagent\msagentgui.exe -av" /ru ""
- %WINDIR%\Explorer.EXE
- %WINDIR%\AppPatch\Appfix.dll
- %WINDIR%\Fonts\app004.fon
- %WINDIR%\msagent\msagentgui.exe