Техническая информация
- <SYSTEM32>\reg.exe Add HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{C42EB5A1-0EED-E549-91B0-159485860231}\ /ve /f
- <SYSTEM32>\regini.exe "%TEMP%\tmp.ini"
- <SYSTEM32>\cmd.exe /c "%TEMP%\tmp.bat"
- <SYSTEM32>\reg.exe Add HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\ /ve /f
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\ПФКѕЧАГж.scf
- %TEMP%\tmp.bat
- %TEMP%\tmp.ini
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
- %TEMP%\Quick\ПФКѕЧАГж.scf
- %TEMP%\Quick\Internet Explorer.lnk
- %TEMP%\Quick.zip
- %TEMP%\Quick\Internet Explorer.lnk
- %TEMP%\Quick\ПФКѕЧАГж.scf
- %TEMP%\Quick.zip
- %TEMP%\tmp.ini
- %TEMP%\tmp.bat
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'SHELLDLL_DefView' WindowName: ''
- ClassName: 'Progman' WindowName: ''