Техническая информация
- '%TEMP%\uninstallkit.exe' /method=KillProcess /param1=chrome.exe /S
- '%TEMP%\uninstallkit.exe' /method=DeleteFirefoxExtensions /param1=ReWinUp /S
- '%TEMP%\~nsu.tmp\Au_.exe' _?=<Текущая директория>\
- '%TEMP%\uninstallkit.exe' /method=KillProcess /param1=firefox.exe /S
- '%TEMP%\uninstallkit.exe' (загружен из сети Интернет)
- %TEMP%\nsw3.tmp\registry.dll
- %TEMP%\nsw3.tmp\SimpleSC.dll
- %TEMP%\nsw3.tmp\utils.dll
- %TEMP%\uninstallkit.exe
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\nsw3.tmp\nsURL.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\uninstallkit[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\uninstallkit[1].exe
- 'st.##winup.com':443
- 'me###.vitkvitk.com':80
- me###.vitkvitk.com/xmlstatic/installers/software/uninstallerkit/uninstallkit.exe
- DNS ASK st.##winup.com
- DNS ASK me###.vitkvitk.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'