Техническая информация
- '%TEMP%\_ir_sf7_temp_0\irsetup.exe' "__IRAFN:<Полный путь к вирусу>"
- '<SYSTEM32>\taskkill.exe' "/F /IM "
- '<SYSTEM32>\taskkill.exe' /F /IM updataX.exe /IM kaakoo.exe
- %TEMP%\_ir_sf7_temp_0\kaguSetup.ico
- %TEMP%\_ir_sf7_temp_0\setup.ico
- %TEMP%\_ir_sf7_temp_0\SetupService.dll
- <SYSTEM32>\tage.ini
- %TEMP%\_ir_sf7_temp_0\kaakoo.ico
- %TEMP%\_ir_sf7_temp_0\irsetup.dat
- %TEMP%\_ir_sf7_temp_0\irsetup.exe
- %TEMP%\_ir_sf7_temp_0\IRIMG1.JPG
- %TEMP%\_ir_sf7_temp_0\uninstall.ico
- %TEMP%\_ir_sf7_temp_0\updataX.ico
- <SYSTEM32>\tage.ini
- %TEMP%\_ir_sf7_temp_0\irsetup.dat
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'