Техническая информация
- '<SYSTEM32>\taskkill.exe' /im browser.exe
- '<SYSTEM32>\taskkill.exe' /im chrome.exe
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\yes\v12\komut.cmd" "
- %WINDIR%\yes\v12\komut.cmd
- %WINDIR%\yes\v12\jquery-1.9.1.min.js
- %WINDIR%\yes\v12\icon.png
- %PROGRAM_FILES%\Company\Flash Player\Uninstall.ini
- %PROGRAM_FILES%\Company\Flash Player\Uninstall.exe
- %WINDIR%\yes\v12\manifest.json
- C:\Users\%USERNAME%\AppData\Local\Google\Chrome\User Data\Default\Preferences
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %WINDIR%\yes\v12\background.js
- <LS_APPDATA>\Google\Chrome\User Data\Default\Preferences
- C:\Users\%USERNAME%\AppData\Local\Yandex\YandexBrowser\User Data\Default\Preferences
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'