Техническая информация
- C:\TencentUpdata\AppUpdate.exe
- <SYSTEM32>\attrib.exe +H +R ""%TEMP%\31a9fed7621f135f6e7b9060e202d9a5.dat""
- <SYSTEM32>\net1.exe start W32Time
- <SYSTEM32>\attrib.exe +H +R "c:\TencentUpdata"
- <SYSTEM32>\cmd.exe /c c:\TencentUpdata\stos.bat
- <SYSTEM32>\sc.exe stop W32Time
- <SYSTEM32>\sc.exe config W32Time start=auto
- <SYSTEM32>\wscript.exe c:\aec9kvs\phf6pef.vbs
- C:\aec9kvs\phf6pef.vbs
- C:\TencentUpdata\stos.bat
- C:\TencentUpdata\AppUpdate.exe
- C:\TencentUpdata\common\Utility.dll
- C:\aec9kvs\phf6pef.vbs
- 'in###7.3322.org':8185
- DNS ASK ti##.#indows.com
- DNS ASK in###7.3322.org
- '<IP-адрес в локальной сети>':123
- 'ti##.#indows.com':123