Техническая информация
- %WINDIR%\explorer.exe
- %WINDIR%\syswow64\msdt.exe
- iexplore.exe
- firefox.exe
- %WINDIR%\syswow64\cmd.exe
- %HOMEPATH%\desktop\parnas_01.jpeg
- %TEMP%\nsh89c4.tmp
- %TEMP%\nsh89c5.tmp\nsexec.dll
- %APPDATA%\openbsd\demo\vnd.wap.wmlscript.xml
- %APPDATA%\openbsd\demo\vcbuildui.dll
- %APPDATA%\openbsd\demo\org.gnome.power-manager.gschema.xml
- %APPDATA%\openbsd\demo\aximp.exe
- %APPDATA%\openbsd\demo\aspnetperf.dll
- %APPDATA%\openbsd\demo\vbupgrade.exe
- %APPDATA%\openbsd\demo\jconvert.exe
- %APPDATA%\openbsd\demo\cutterrollfeed.xml
- %TEMP%\manzanilla
- %TEMP%\larcontrafagotto.dll
- %TEMP%\nsh89c5.tmp\nsexec.dll
- '%WINDIR%\syswow64\rundll32.exe' LarContrafagotto,Pretor
- '%WINDIR%\syswow64\cmd.exe'
- '%WINDIR%\syswow64\msdt.exe'
- '%WINDIR%\syswow64\cmd.exe' del "%WINDIR%\SysWOW64\cmd.exe"