04ad19ec4cca36d9a6684ea1e7f34a8a53599a27f2c8417c509464bc39b00f88.exe "C:\Users\Administrator\AppData\Local\Temp\04ad19ec4cca36d9a6684ea1e7f34a8a53599a27f2c8417c509464bc39b00f88.exe"
2740taskkill.exe taskkill.exe /im KSafeTray.exe /f
1292sys.exe "C:\WINDOWS\sys.exe"
2308cmd.exe cmd /c del 04ad19ec4cca36d9a6684ea1e7f34a8a53599a27f2c8417c509464bc39b00f88.exe
2944