Техническая информация
- %WINDIR%\a.bat
- %TEMP%\is-jo9r1.tmp\set-up.tmp
- nul
- %WINDIR%\set-up.exe
- %WINDIR%\wget\bin\wget.exe
- %WINDIR%\wget\bin\libssl32.dll
- %WINDIR%\wget\bin\libintl3.dll
- %WINDIR%\wget\bin\libiconv2.dll
- %WINDIR%\wget\bin\libeay32.dll
- %WINDIR%\curl\curl.exe
- %WINDIR%\usw.reg
- %WINDIR%\mgr_f.reg
- %TEMP%\is-vusmc.tmp\_isetup\_regdll.tmp
- %WINDIR%\d.reg
- %WINDIR%\c.reg
- %WINDIR%\mt.reg
- %WINDIR%\et.reg
- %WINDIR%\ct.reg
- %WINDIR%\at.reg
- %WINDIR%\e.exe
- %WINDIR%\d.exe
- %WINDIR%\d.bat
- %WINDIR%\c.exe
- %WINDIR%\c.bat
- %WINDIR%\b.exe
- %WINDIR%\ereg\e.reg
- %TEMP%\is-vusmc.tmp\_isetup\_shfoldr.dll
- %WINDIR%\b.exe
- %WINDIR%\c.exe
- %WINDIR%\c.bat
- %WINDIR%\d.exe
- %WINDIR%\d.bat
- %WINDIR%\e.exe
- %WINDIR%\c.reg
- %WINDIR%\mgr_f.reg
- %WINDIR%\d.reg
- %WINDIR%\usw.reg
- %WINDIR%\at.reg
- %WINDIR%\ct.reg
- %WINDIR%\et.reg
- %WINDIR%\mt.reg
- '%WINDIR%\set-up.exe'
- '%TEMP%\is-jo9r1.tmp\set-up.tmp' /SL5="$2600E0,532793,82432,%WINDIR%\Set-up.exe"
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\a.bat" "' (со скрытым окном)
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\a.bat" "
- '<SYSTEM32>\cmd.exe' /S /D /c" ver "
- '<SYSTEM32>\findstr.exe' /IL "5.1."