Техническая информация
- <SYSTEM32>\reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sheed A.V.-r2du-soft" /v "find1" /t REG_SZ /d "%HOMEPATH%\{903B7D6D-DDD0-4A28-AF5B-AD528D9A7CA6}" /f
- <SYSTEM32>\reg.exe add "HKEY_USERS\S-1-5-21-2025429265-790525478-839522115-1003\Software\Microsoft\Internet Explorer\Main" /v "Start Page" /t REG_SZ /d "http://www.r2###soft.ir" /f
- <SYSTEM32>\reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sheed A.V.-r2du-soft" /v "find3" /t REG_SZ /d "%ALLUSERSPROFILE%\Application Data\{903B7D6D-DDD0-4A28-AF5B-AD528D9A7CA6}" /f
- <SYSTEM32>\reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sheed A.V.-r2du-soft" /v "find2" /t REG_SZ /d "%ALLUSERSPROFILE%\{903B7D6D-DDD0-4A28-AF5B-AD528D9A7CA6}" /f
- <SYSTEM32>\reg.exe query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sheed A.V." /v "InstallLocation"
- <SYSTEM32>\cmd.exe /c ""%TEMP%\1.tmp\remover sheed ver 3.0.bat" "
- <SYSTEM32>\reg.exe add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /t REG_SZ /d "http://www.r2###soft.ir" /f
- <SYSTEM32>\reg.exe add "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main" /v "Start Page" /t REG_SZ /d "http://www.r2###soft.ir" /f
- %TEMP%\1.tmp\remover sheed ver 3.0.bat