Technical Information
- %WINDIR%\explorer.exe
- iexplore.exe
- iexplore.exe process, wininet.dll module
- %TEMP%\0wcait9o8ypt092
- %TEMP%\3omr3bi4bd
- %TEMP%\nsra5e0.tmp\r5gfenxfio07ark.dll
- '%WINDIR%\syswow64\explorer.exe'
- '%WINDIR%\syswow64\cmd.exe' del "<Full path to file>"