Техническая информация
- '%PROGRAM_FILES%\test.exe.exe'
- '<SYSTEM32>\wscript.exe' "%PROGRAM_FILES%\Winrar\361\hexbin.jse"
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wscript.exe' "%PROGRAM_FILES%\Winrar\361\schedule.jse"
- '<SYSTEM32>\wscript.exe' "%PROGRAM_FILES%\Winrar\361\install.jse"
- '<SYSTEM32>\wscript.exe' "%PROGRAM_FILES%\Winrar\361\local.jse"
- %PROGRAM_FILES%\Winrar\361\aaclient.exe
- %PROGRAM_FILES%\Winrar\361\install.jse
- %PROGRAM_FILES%\Winrar\361\aclui.dll
- %PROGRAM_FILES%\test.exe.exe
- %PROGRAM_FILES%\Microsoft\hexa.nt
- %PROGRAM_FILES%\Winrar\361\tao.ico
- %PROGRAM_FILES%\Winrar\361\game.ico
- %PROGRAM_FILES%\Winrar\361\local.jse
- %PROGRAM_FILES%\Winrar\361\hexbin.jse
- %PROGRAM_FILES%\Winrar\361\schedule.jse
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %PROGRAM_FILES%\test.exe.exe
- %PROGRAM_FILES%\Winrar\361\install.jse
- %PROGRAM_FILES%\Winrar\361\hexbin.jse
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''