Technical Information
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Id99' = '%HOMEPATH%\Id99.exe'
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Alexandra' = '%HOMEPATH%\Alexandra.exe'
- %WINDIR%\microsoft.net\framework\v4.0.30319\jsc.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %APPDATA%\id99.exe
- %TEMP%\alexandra.exe
- %ProgramFiles(x86)%\adobe inc\adobe installer\set-up.exe
- %ProgramFiles(x86)%\adobe inc\adobe installer\uninstall.exe
- %ProgramFiles(x86)%\adobe inc\adobe installer\uninstall.ini
- %HOMEPATH%\id99.exe
- %HOMEPATH%\alexandra.exe
- %TEMP%\creativecloud\acc\adobedownload\hdinstaller.log
- %TEMP%\$inst\temp_0.tmp
- '%APPDATA%\id99.exe'
- '%TEMP%\alexandra.exe'
- '%ProgramFiles(x86)%\adobe inc\adobe installer\set-up.exe'