Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] '{AEB6717E-7E19-11d0-97EE-00C04FD91972}' = ''
- [<HKLM>\SOFTWARE\Classes\InternetShortcut\shell\open\command] '' = 'rundll32.exe shdocvw.dll,OpenURL %l'
- [<HKLM>\SOFTWARE\Classes\InternetShortcut\shell\open\command] '' = 'rundll32.exe url.dll,OpenURL %l'
- <SYSTEM32>\rundll32.exe USER32.DLL,UpdatePerUserSystemParameters ,1 ,True
- <SYSTEM32>\msiexec.exe /V
- <SYSTEM32>\regsvr32.exe /n /i:U shell32.dll /s
- <SYSTEM32>\regsvr32.exe /n /i:U shdocvw.dll /s
- %WINDIR%\Installer\MSI7.tmp
- C:\Config.Msi\26f4c.rbs
- %TEMP%\RGIB.tmp
- %TEMP%\RGIA.tmp
- %TEMP%\RGI6.tmp
- %TEMP%\RGI2.tmp
- %TEMP%\RGI1.tmp
- %TEMP%\RGI3.tmp
- %TEMP%\RGI5.tmp
- %TEMP%\RGI4.tmp
- C:\Config.Msi\26f4c.rbs
- %WINDIR%\Installer\MSI7.tmp
- %WINDIR%\Installer\26f4b.ipi
- %TEMP%\RGIB.tmp
- %TEMP%\RGIA.tmp
- %TEMP%\RGI6.tmp
- %TEMP%\RGI2.tmp
- %TEMP%\RGI1.tmp
- %TEMP%\RGI3.tmp
- %TEMP%\RGI5.tmp
- %TEMP%\RGI4.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''