Техническая информация
- <SYSTEM32>\cmd.exe /c ""%TEMP%\temp_tmp.bat" "
- <SYSTEM32>\attrib.exe "%ALLUSERSPROFILE%\Desktop\Internat Explorar" +s
- %ALLUSERSPROFILE%\Desktop\Internat Explorar\target.lnk
- %ALLUSERSPROFILE%\Desktop\Internat Explorar\Desktop.ini
- %TEMP%\nsd3.tmp\AccessControl.dll
- %TEMP%\temp_tmp.bat
- %HOMEPATH%\Favorites\МФ ±¦ Нш №є.lnk
- %ALLUSERSPROFILE%\Desktop\МФ ±¦ Нш №є.lnk
- %WINDIR%\tbgw.ico
- %ALLUSERSPROFILE%\Application Data\WD\kswbc.dll
- %TEMP%\nsd3.tmp\FindProcDLL.dll
- %TEMP%\nsx2.tmp
- %ALLUSERSPROFILE%\Application Data\WD\kwsui.dll
- %ALLUSERSPROFILE%\Application Data\WD\kwssp.dll
- %ALLUSERSPROFILE%\Application Data\WD\kswebshield.dll
- %TEMP%\nsd3.tmp\FindProcDLL.dll
- %TEMP%\nsd3.tmp\AccessControl.dll