Техническая информация
- расширений файлов
- '%TEMP%\nsi3.tmp\ns5.tmp' cmd.exe /c regini offreg.ini
- '%TEMP%\nsi3.tmp\ns4.tmp' cmd.exe /c regini onreg.ini
- '<SYSTEM32>\regini.exe' offreg.ini
- '<SYSTEM32>\regini.exe' onreg.ini
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer] 'NoInternetIcon' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoInternetIcon' = '00000000'
- %HOMEPATH%\Favorites\КэВлЖµµА.lnk
- %HOMEPATH%\Favorites\ДРИЛЖµµА.lnk
- %HOMEPATH%\Favorites\ѕУјТНжѕЯ.lnk
- %HOMEPATH%\Favorites\Е®ИЛЖµµА.lnk
- %HOMEPATH%\Favorites\µзЖчЖµµА.lnk
- %HOMEPATH%\Favorites\јТЧ°ЖµµА.lnk
- %TEMP%\nsi3.tmp\System.dll
- %HOMEPATH%\Favorites\КОЖ·Р¬°ь.lnk
- %HOMEPATH%\Favorites\ГАИЭЖµµА.lnk
- %HOMEPATH%\Favorites\КіЖ·ЖµµА.lnk
- %HOMEPATH%\Favorites\ЙМіЗЖµµА.lnk
- %TEMP%\nsi3.tmp\ns4.tmp
- %PROGRAM_FILES%\Internet Explorer\offreg.ini
- %TEMP%\nsi3.tmp\nsExec.dll
- %TEMP%\nse2.tmp
- %PROGRAM_FILES%\Internet Explorer\onreg.ini
- %HOMEPATH%\Favorites\ЧЫєПЖµµА.lnk
- %HOMEPATH%\Favorites\МЁНеЖµµА.lnk
- %HOMEPATH%\Favorites\МФ±¦»К№Ъ.lnk
- %TEMP%\nsi3.tmp\ns5.tmp
- %HOMEPATH%\Favorites\МФ±¦ґЩПъ.lnk
- %TEMP%\nsi3.tmp\ns5.tmp
- %PROGRAM_FILES%\Internet Explorer\offreg.ini
- %TEMP%\nsi3.tmp\ns4.tmp
- %PROGRAM_FILES%\Internet Explorer\onreg.ini
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'