Техническая информация
- '<SYSTEM32>\taskkill.exe' /f /im "mysysm.exe"
- '<SYSTEM32>\taskkill.exe' /f /im "ASCValidatorService.exe"
- <SYSTEM32>\lsass.exe
- %TEMP%\cc41ca57-f2f6-47a6-b95d-64e1261d233e_acpsetup.exe
- %TEMP%\is-IGTPJ.tmp\cc41ca57-f2f6-47a6-b95d-64e1261d233e_acpsetup.tmp
- %TEMP%\is-FAHV1.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-FAHV1.tmp\_isetup\_iscrypt.dll
- %TEMP%\is-FAHV1.tmp\setup_en.bmp
- ClassName: '' WindowName: ''
- '%TEMP%\cc41ca57-f2f6-47a6-b95d-64e1261d233e_acpsetup.exe'
- '%TEMP%\is-IGTPJ.tmp\cc41ca57-f2f6-47a6-b95d-64e1261d233e_acpsetup.tmp' /SL5="$30092,4024927,170496,%TEMP%\cc41ca57-f2f6-47a6-b95d-64e1261d233e_acpsetup.exe"
- '<SYSTEM32>\lsass.exe'