Техническая информация
- %APPDATA%\Mozilla\Firefox\profiles.ini
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\signons.sqlite
- %TEMP%\start.cmd
- %TEMP%\sn.txt
- %TEMP%\1.reg
- %TEMP%\awpr.ini
- %TEMP%\chinese.lng
- %TEMP%\passdef.ssd
- %TEMP%\pspr.exe
- %TEMP%\awprhook.dll
- %TEMP%\awprserv.dll
- %TEMP%\elcom_reg.dll
- %TEMP%\esil.dll
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- '%TEMP%\pspr.exe'
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\start.cmd" "
- '%WINDIR%\regedit.exe' /s 1.REG