Техническая информация
- %TEMP%\nsx64bc.tmp\banner.dll
- %TEMP%\eav_vc52_tmp\vc52.cn.url
- %TEMP%\eav_vc52_tmp\eav_nt64_16.1.14.0.msi
- %TEMP%\eav_vc52_tmp\hosts.cmd
- %TEMP%\nsx64bc.tmp\nsexec.dll
- nul
- %TEMP%\msi2de7c.log
- %TEMP%\msi30b3.tmp
- %TEMP%\msi3249.tmp
- %TEMP%\msi3279.tmp
- %TEMP%\msi32a9.tmp
- %TEMP%\msi32d9.tmp
- %TEMP%\msi3309.tmp
- %TEMP%\msi3358.tmp
- %TEMP%\msi33b6.tmp
- %TEMP%\msi3472.tmp
- %TEMP%\eav_vc52_tmp\hosts.cmd
- %TEMP%\msi30b3.tmp
- %TEMP%\msi3249.tmp
- %TEMP%\msi3279.tmp
- %TEMP%\msi32a9.tmp
- %TEMP%\msi32d9.tmp
- %TEMP%\msi3309.tmp
- %TEMP%\msi3358.tmp
- %TEMP%\msi33b6.tmp
- %TEMP%\msi3472.tmp
- '%WINDIR%\syswow64\cmd.exe' /c ""%TEMP%\eav_vc52_tmp\hosts.cmd""' (со скрытым окном)
- '%WINDIR%\syswow64\cmd.exe' /c ""%TEMP%\eav_vc52_tmp\hosts.cmd""
- '%WINDIR%\syswow64\find.exe' /i "expire.eset.com" <DRIVERS>\etc\hosts
- '%WINDIR%\syswow64\fltmc.exe'
- '%WINDIR%\syswow64\msiexec.exe' /i "%TEMP%\eav_vc52_tmp\eav_nt64_16.1.14.0.msi"