Техническая информация
- %TEMP%\PB IndoHack FUll.exe
- %TEMP%\llll.exe
- <SYSTEM32>\notepad.exe %WINDIR%\d0nes.js
- %PROGRAM_FILES%\kampt.mp3
- %WINDIR%\d0nes.js
- <SYSTEM32>\wbem\xml\h0trecii.xml
- %TEMP%\llll.exe
- %TEMP%\PB IndoHack FUll.exe
- ClassName: '' WindowName: 'HSUpdate'
- ClassName: 'Shell_TrayWnd' WindowName: ''