Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\MicrosoftData.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\Defender.lnk
- C:\ProgramData\SystemResourcesFolder\config.json
- %APPDATA%\getnzb-setup.exe
- %TEMP%\is-KS5B9.tmp\getnzb-setup.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- C:\ProgramData\SystemResourcesFolder\atibtmonData.exe
- %TEMP%\cmd.exe
- %TEMP%\conhost.exe
- %APPDATA%\getnzb-setup.exe
- C:\ProgramData\SystemResourcesFolder\atibtmonData.exe
- C:\ProgramData\SystemResourcesFolder\config.json
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- '%TEMP%\is-KS5B9.tmp\getnzb-setup.tmp' /SL5="$1013E,6033420,139776,%APPDATA%\getnzb-setup.exe"
- '%APPDATA%\getnzb-setup.exe'