Technical Information
- '<SYSTEM32>\taskkill.exe' /f /im "<File name>.exe"
- '<SYSTEM32>\cmd.exe'
- %APPDATA%\vichyssoises.dll
- %APPDATA%\Statue.Kdqj
- %TEMP%\nsv3.tmp\System.dll
- %TEMP%\23ef5514\3059.tmp
- %TEMP%\23ef5514\436f.tmp
- %APPDATA%\archive_active_unhovered.png
- %APPDATA%\ai.js
- %TEMP%\nss2.tmp
- %APPDATA%\bar.conf.xml
- %APPDATA%\goURL_lr_photoshop_se.csv
- %APPDATA%\Abidjan
- ClassName: '' WindowName: ''