Техническая информация
- [<HKLM>\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\open\command] '' = '<SYSTEM32>\TXPlatform.exe '
- %WINDIR%\regedit.exe /s ""%TEMP%\TempIE.reg""
- <SYSTEM32>\ntvdm.exe -f -i1
- %TEMP%\TempIE.reg
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %HOMEPATH%\Favorites\.url
- <SYSTEM32>\f1drc1nr.dll
- <SYSTEM32>\dtadhost.dll
- <SYSTEM32>\TXPlatform.exe
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- %TEMP%\TempIE.reg
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-ad8.adc.3b0002'
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'Progman' WindowName: ''
- ClassName: 'SHELLDLL_DefView' WindowName: ''