Техническая информация
- %TEMP%\ClearModul\Clear.Exe
- <SYSTEM32>\taskkill.exe /im chrome.exe /f /t
- <SYSTEM32>\taskkill.exe /im opera.exe /f /t
- <SYSTEM32>\taskkill.exe /im amvo.exe /f /t
- <SYSTEM32>\taskkill.exe /im firefox.exe /f /t
- <SYSTEM32>\taskkill.exe /im explorer.exe /f
- <SYSTEM32>\taskkill.exe /im wscript.exe /f
- <SYSTEM32>\taskkill.exe /im iexplore.exe /f
- %WINDIR%\Explorer.EXE
- chrome.exe
- opera.exe
- iexplore.exe
- firefox.exe
- %TEMP%\ClearModul\delete.exe
- %TEMP%\ClearModul\drthost.exe
- %TEMP%\2396NWBK.bat
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\ClearModul\Clear.Exe
- %TEMP%\2396NWBK.bat
- %TEMP%\$inst\temp_0.tmp
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''