Техническая информация
- %TEMP%\2.tmp\safeejectoperation.exe
- %TEMP%\2.tmp\RemoveDrive.exe "USB\VID_0718*" "USB\VID_1A4B*" "USB\VID_124C*"
- %TEMP%\1.tmp\EJECT_USB_3.exe
- <SYSTEM32>\taskkill.exe /f /IM "ACCESSAntivirusScanner.exe" /IM "AV_GUARD.exe" /IM "McAfeeEncryptedUSBAntivirus.exe" /IM "SSDESDService.exe"
- <SYSTEM32>\wscript.exe "%TEMP%\2.tmp\closeallusbapps.vbs"
- <SYSTEM32>\cmd.exe /c ""%TEMP%\1.tmp\EJECTUSBDRV.cmd" "
- <SYSTEM32>\cmd.exe /c ""%TEMP%\2.tmp\EJECT_USB_3.CMD" "
- %TEMP%\2.tmp\closeallusbapps.vbs
- %TEMP%\2.tmp\RemoveDrive.exe
- %TEMP%\2.tmp\safeejectoperation.exe
- %TEMP%\1.tmp\EJECTUSBDRV.cmd
- %TEMP%\1.tmp\EJECT_USB_3.exe
- %TEMP%\2.tmp\EJECT_USB_3.CMD
- %TEMP%\2.tmp\RemoveDrive.exe
- %TEMP%\2.tmp\safeejectoperation.exe
- %TEMP%\2.tmp\EJECT_USB_3.CMD
- %TEMP%\1.tmp\EJECT_USB_3.exe
- %TEMP%\1.tmp\EJECTUSBDRV.cmd
- %TEMP%\2.tmp\closeallusbapps.vbs
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''