Техническая информация
- [<HKLM>\SOFTWARE\Classes\CLSID\{BDEADF00-C265-11d0-BCED-00A0C90AB50F}\shell\open\command] '' = '<SYSTEM32>\dirLock.exe %1'
- '<SYSTEM32>\regsvr32.exe' <SYSTEM32>\Command.ocx /s
- '<SYSTEM32>\regsvr32.exe' <SYSTEM32>\LockFile.dll /s
- '<SYSTEM32>\regsvr32.exe' <SYSTEM32>\XPForm.ocx /s
- '<SYSTEM32>\regsvr32.exe' <SYSTEM32>\ctlsbar32.ocx /s
- '<SYSTEM32>\regsvr32.exe' %WINDIR%\LockFile.dll /u /s
- '<SYSTEM32>\regsvr32.exe' %WINDIR%\Copyhook.dll /u /s
- '<SYSTEM32>\regsvr32.exe' <SYSTEM32>\scrrun.dll /s
- '<SYSTEM32>\regsvr32.exe' <SYSTEM32>\THREED32.OCX /s
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoSetFolders' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoFind' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoRun' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoLogoff' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoClose' = '00000000'
- <SYSTEM32>\ctlsbar32.ocx
- <SYSTEM32>\XPForm.ocx
- <SYSTEM32>\Command.ocx
- <SYSTEM32>\dirLock.exe
- <SYSTEM32>\THREED32.OCX
- <SYSTEM32>\LockFile.dll
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WINHELP' WindowName: ''