Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\chrome.vbs.lnk
- %TEMP%\RarSFX0\readme.txt
- %TEMP%\ssleay32.dll
- %TEMP%\platforms\qwindows.dll
- %TEMP%\Qt5WebSockets.dll
- %TEMP%\Qt5Network.dll
- %TEMP%\Qt5Core.dll
- %TEMP%\msvcr110.dll
- %TEMP%\vccorlib110.dll
- %TEMP%\msvcp110.dll
- %TEMP%\cudart32_60.dll
- %TEMP%\chrome.exe
- %TEMP%\start_32bit.bat
- %TEMP%\RarSFX0\1.vbs
- %TEMP%\RarSFX0\1.bat
- %TEMP%\RarSFX0\chrome.exe
- %TEMP%\libeay32.dll
- %TEMP%\chrome.vbs
- %TEMP%\start_32bit.bat
- %TEMP%\chrome.exe
- %TEMP%\cudart32_60.dll
- %TEMP%\libeay32.dll
- %TEMP%\msvcp110.dll
- %TEMP%\msvcr110.dll
- %TEMP%\Qt5Core.dll
- %TEMP%\Qt5Network.dll
- %TEMP%\Qt5WebSockets.dll
- %TEMP%\platforms\qwindows.dll
- %TEMP%\ssleay32.dll
- %TEMP%\vccorlib110.dll
- %TEMP%\chrome.vbs
- ClassName: 'EDIT' WindowName: ''
- '<SYSTEM32>\wscript.exe' "%TEMP%\RarSFX0\1.vbs"
- '%TEMP%\RarSFX0\chrome.exe' -p123 -d%HOMEPATH%\Local Settings\Temp
- '<SYSTEM32>\wscript.exe' "%TEMP%\chrome.vbs"
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\RarSFX0\1.bat" "
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\start_32bit.bat" "
- '<SYSTEM32>\notepad.exe' %TEMP%\RarSFX0\readme.txt