Техническая информация
- '%TEMP%\AdfBotPro 3.3.1 Final.exe'
- '<SYSTEM32>\msiexec.exe' /V
- '<SYSTEM32>\wscript.exe' //b "%HOMEPATH%\AdfBotProPlugins.vbs"
- '<SYSTEM32>\WScript.exe' "%TEMP%\AdfBotProPlugins.vbs"
- '<SYSTEM32>\MSIEXEC.EXE' /i "%TEMP%\{EC09472F-5FBF-4A0E-8570-E8E9C38AC12E}\AdfBotPro 3.3.1 Final.msi" SETUPEXEDIR="<LS_APPDATA>\Temp"
- %TEMP%\{EC09472F-5FBF-4A0E-8570-E8E9C38AC12E}\AdfBotPro 3.3.1 Final.msi
- %TEMP%\AdfBotProPlugins.vbs
- %APPDATA%\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\licencechecker.vbs.vbs
- %APPDATA%\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AdfBotProPlugins.vbs
- %HOMEPATH%\AdfBotProPlugins.vbs
- %TEMP%\{EC09472F-5FBF-4A0E-8570-E8E9C38AC12E}\Setup.INI
- %TEMP%\AdfBotPro 3.3.1 Final.exe
- %TEMP%\{EC09472F-5FBF-4A0E-8570-E8E9C38AC12E}\_ISMSIDEL.INI
- %TEMP%\~5FBB.tmp
- %TEMP%\{EC09472F-5FBF-4A0E-8570-E8E9C38AC12E}\0x0409.ini
- %TEMP%\~5FBB.tmp
- DNS ASK go#####drive.hopper.pw
- DNS ASK dn#.##ftncsi.com
- DNS ASK le#####gs.serveblog.net
- ClassName: 'Shell_TrayWnd' WindowName: ''