Техническая информация
- '<SYSTEM32>\regsvr32.exe' /s "%APPDATA%\Informer\informer.dll"
- '<SYSTEM32>\taskkill.exe' /F /IM iexplore.exe
- '<SYSTEM32>\taskkill.exe' /F /IM firefox.exe
- iexplore.exe
- firefox.exe
- %APPDATA%\Informer\informer.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\extensions\informer@informer.net.xpi
- ClassName: '' WindowName: ''