Техническая информация
- '%WINDIR%\syswow64\taskkill.exe' /im "ID-AIDD.exe"
- %HOMEPATH%\downloads\install_id-aidd\id-aidd\replacement files\id-aidd.cfg
- %HOMEPATH%\downloads\install_id-aidd\setup.vbs
- %HOMEPATH%\downloads\install_id-aidd\installer.bat
- %HOMEPATH%\downloads\install_id-aidd\id-aidd\id-aidd-setup.exe
- %HOMEPATH%\downloads\install_id-aidd\id-aidd\replacement files\id-aidd.exe
- %TEMP%\7zsfx000.cmd
- nul
- %TEMP%\tsue70d9a56.dll
- %TEMP%\id-aidd-setup.log
- %TEMP%\b1f53193.dat
- %TEMP%\b1f53193\_setup.dll
- %TEMP%\b1f53193\setup.ico
- %TEMP%\b1f53193\readme.txt
- %TEMP%\b1f53193\setup.exe
- %HOMEPATH%\downloads\install_id-aidd\installer.bat
- %TEMP%\tsue70d9a56.dll
- %TEMP%\b1f53193.dat
- %TEMP%\b1f53193\_setup.dll
- %TEMP%\b1f53193\setup.ico
- %TEMP%\b1f53193\readme.txt
- %TEMP%\b1f53193\setup.exe
- %TEMP%\7zsfx000.cmd
- %TEMP%\b1f53193.dat
- ClassName: '' WindowName: ''
- '%WINDIR%\syswow64\wscript.exe' "%HOMEPATH%\Downloads\Install_ID-AIDD\Setup.vbs"
- '%HOMEPATH%\downloads\install_id-aidd\id-aidd\id-aidd-setup.exe'
- '%WINDIR%\syswow64\cmd.exe' /C "%HOMEPATH%\Downloads\Install_ID-AIDD\Installer.bat"' (со скрытым окном)
- '%WINDIR%\syswow64\cmd.exe' /c ""%TEMP%\7ZSfx000.cmd" "' (со скрытым окном)
- '%WINDIR%\syswow64\cmd.exe' /C "%HOMEPATH%\Downloads\Install_ID-AIDD\Installer.bat"
- '%WINDIR%\syswow64\cmd.exe' /c ""%TEMP%\7ZSfx000.cmd" "
- '%WINDIR%\syswow64\net.exe' session
- '%WINDIR%\syswow64\net1.exe' session