Техническая информация
- %TEMP%\_ir_sf7_temp_0\irsetup.exe "__IRAFN:<Полный путь к вирусу>"
- <SYSTEM32>\taskkill.exe "/F /IM "
- <SYSTEM32>\taskkill.exe /F /IM updataX.exe /IM kaakoo.exe
- %TEMP%\_ir_sf7_temp_0\kaguSetup.ico
- %TEMP%\_ir_sf7_temp_0\setup.ico
- %TEMP%\_ir_sf7_temp_0\SetupService.dll
- <SYSTEM32>\tage.ini
- %TEMP%\_ir_sf7_temp_0\kaakoo.ico
- %TEMP%\_ir_sf7_temp_0\irsetup.dat
- %TEMP%\_ir_sf7_temp_0\irsetup.exe
- %TEMP%\_ir_sf7_temp_0\IRIMG1.JPG
- %TEMP%\_ir_sf7_temp_0\uninstall.ico
- %TEMP%\_ir_sf7_temp_0\updataX.ico
- <SYSTEM32>\tage.ini
- %TEMP%\_ir_sf7_temp_0\irsetup.dat
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''