Техническая информация
- '%TEMP%\~nsu.tmp\Au_.exe' /S _?=%TEMP%\
- '%TEMP%\uninst.exe' /S
- '%TEMP%\driverdel.exe' /S
- '<SYSTEM32>\Driverdel.exe'
- '%TEMP%\nsx3.tmp\ns4.tmp' %TEMP%\Restore.cmd
- '<SYSTEM32>\wscript.exe' "%TEMP%\Restore.vbs"
- '<SYSTEM32>\cmd.exe' /c %TEMP%\Restore.cmd
- %HOMEPATH%\Favorites\ЦР№ШґеФЪПЯ .url
- %HOMEPATH%\Favorites\РВАЛКЧТі.url
- %HOMEPATH%\Favorites\ПВФШ\Зэ¶ЇЦ®јТ.url
- %HOMEPATH%\Favorites\ПВФШ\ѕНИҐМмїХ ПВФШХѕ .url
- %HOMEPATH%\Favorites\Ммј«Нш.url
- %HOMEPATH%\Favorites\МЪС¶КЧТі.url
- %HOMEPATH%\Favorites\ПµНіґуНжјТјјКхВЫМі.url
- %HOMEPATH%\Favorites\НшЦ·µјєЅ.url
- %HOMEPATH%\Favorites\ПВФШ\РВИнПВФШ.url
- %TEMP%\uninst.exe
- %TEMP%\temp.ini
- %TEMP%\nsyF.tmp
- %TEMP%\nshD.tmp
- %TEMP%\nsx3.tmp\UserInfo.dll
- %HOMEPATH%\Favorites\ПВФШ\ц·ІИнјюХѕ.url
- <DRIVERS>\rtkhdaud.dat
- %TEMP%\nsx3.tmp\System.dll
- %HOMEPATH%\Favorites\ЛСєь.url
- %TEMP%\nsx3.tmp\ns4.tmp
- %TEMP%\nsx3.tmp\nsExec.dll
- %TEMP%\nso7.tmp\System.dll
- %TEMP%\nsu6.tmp
- <SYSTEM32>\Driverdel.exe
- %TEMP%\nsx2.tmp
- %TEMP%\Restore.vbs
- %TEMP%\Restore.cmd
- %TEMP%\driverdel.ini
- %HOMEPATH%\Favorites\Google.url
- %HOMEPATH%\Favorites\CCTVЦРСлµзКУМЁ.url
- %HOMEPATH%\Favorites\°Щ¶ИТ»ПВЈ¬ДгѕНЦЄµА.url
- %HOMEPATH%\Favorites\°Щ¶И.url
- %TEMP%\nsl9.tmp
- %TEMP%\driverdel.exe
- %TEMP%\nstB.tmp
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\nsx3.tmp\UserInfo.dll
- %TEMP%\nsx3.tmp\System.dll
- %TEMP%\nsx3.tmp\nsExec.dll
- %TEMP%\temp.ini
- %TEMP%\uninst.exe
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\driverdel.ini
- <SYSTEM32>\Driverdel.exe
- %TEMP%\nso7.tmp\System.dll
- %TEMP%\Restore.vbs
- %TEMP%\Restore.cmd
- %TEMP%\nsx3.tmp\ns4.tmp