Техническая информация
- %APPDATA%\Mozilla\Firefox\profiles.ini
- %TEMP%\3ff15a53\CX.dat
- %ALLUSERSPROFILE%\Application Data\Adblocker\CX.exe
- %ProgramFiles%\Adblocker\o.x64.dll
- %ProgramFiles%\Adblocker\o.dat
- %ProgramFiles%\Adblocker\o.tlb
- %ProgramFiles%\Adblocker\o.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\aoqdxjb@dydtxrzw.com\install.rdf
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\aoqdxjb@dydtxrzw.com\content\bg.js
- %ALLUSERSPROFILE%\Application Data\Adblocker\CX.dat
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\aoqdxjb@dydtxrzw.com\chrome.manifest
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\bootstrap.js
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\chrome.manifest
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\install.rdf
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\content\bg.js
- %TEMP%\3ff15a53\o.dll
- %TEMP%\3ff15a53\o.tlb
- %TEMP%\3ff15a53\o.x64.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\staged\aoqdxjb@dydtxrzw.com\bootstrap.js
- %ALLUSERSPROFILE%\Application Data\6e958a80feb239af\{4820778D-AB0D-6D18-C316-52A6A0E1D507}.20180809191717
- %TEMP%\3ff15a53\CX.dat
- %TEMP%\3ff15a53\o.x64.dll
- %TEMP%\3ff15a53\o.tlb
- %TEMP%\3ff15a53\o.dll
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\content\bg.js
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\install.rdf
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\chrome.manifest
- %TEMP%\3ff15a53\aoqdxjb@dydtxrzw.com\bootstrap.js
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles%\Adblocker\o.x64.dll"