Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\GoogleFramework.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\WindowsSearchVirus.lnk
- C:\ProgramData\addinsADFS\ssleay32.dll
- C:\ProgramData\addinsADFS\SysDefender.exe
- C:\ProgramData\addinsADFS\Qt5Network.dll
- C:\ProgramData\addinsADFS\Qt5WebSockets.dll
- %TEMP%\$inst\0001.tmp
- %TEMP%\is-ROGKG.tmp\advego_plagiatus.tmp
- %TEMP%\is-V2GAQ.tmp\downloader.exe
- C:\ProgramData\addinsADFS\vccorlib110.dll
- %TEMP%\advego_plagiatus.exe
- C:\ProgramData\addinsADFS\cmd.exe
- C:\ProgramData\addinsADFS\conhost.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- C:\ProgramData\addinsADFS\cudart64_60.dll
- C:\ProgramData\addinsADFS\msvcr110.dll
- C:\ProgramData\addinsADFS\Qt5Core.dll
- C:\ProgramData\addinsADFS\libeay32.dll
- C:\ProgramData\addinsADFS\msvcp110.dll
- C:\ProgramData\addinsADFS\Qt5WebSockets.dll
- C:\ProgramData\addinsADFS\Qt5Network.dll
- C:\ProgramData\addinsADFS\Qt5Core.dll
- C:\ProgramData\addinsADFS\vccorlib110.dll
- C:\ProgramData\addinsADFS\SysDefender.exe
- C:\ProgramData\addinsADFS\ssleay32.dll
- C:\ProgramData\addinsADFS\cudart64_60.dll
- C:\ProgramData\addinsADFS\conhost.exe
- C:\ProgramData\addinsADFS\cmd.exe
- C:\ProgramData\addinsADFS\msvcr110.dll
- C:\ProgramData\addinsADFS\msvcp110.dll
- C:\ProgramData\addinsADFS\libeay32.dll
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\0001.tmp
- %TEMP%\$inst\temp_0.tmp
- '%TEMP%\is-ROGKG.tmp\advego_plagiatus.tmp' /SL5="$1013E,1433602,217600,%TEMP%\advego_plagiatus.exe"
- '%TEMP%\advego_plagiatus.exe'