Техническая информация
- %TEMP%\RarSFX0\server.exe
- <SYSTEM32>\taskkill.exe /f /im kavmm.exe
- <SYSTEM32>\taskkill.exe /f /im avgemc.exe
- <SYSTEM32>\taskkill.exe /f /im kav.exe
- <SYSTEM32>\taskkill.exe /f /im nod32krn.exe
- <SYSTEM32>\taskkill.exe /f /im nod32.exe
- nod32.exe
- %TEMP%\bt2127.bat
- %TEMP%\RarSFX0\server.exe
- %TEMP%\bt2127.bat
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''