Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%APPDATA%\SearchIndexer\desktopsearchservice.exe' = '%APPDATA%\SearchIndexer\desktopsearchservice.exe:*:Enabled:DesktopSearchService'
- '%APPDATA%\SearchIndexer\desktopsearchservice.exe' /inno
- '%TEMP%\is-SUJQV.tmp\ModuleInno.tmp' /SL5="$60034,5068578,118784,%APPDATA%\SearchIndexer\ModuleInno.exe" /VERYSILENT
- '%APPDATA%\SearchIndexer\ModuleInno.exe' /VERYSILENT
- %TEMP%\is-SUJQV.tmp\ModuleInno.tmp
- %TEMP%\nsb3.tmp\SimpleFC.dll
- %TEMP%\nsb3.tmp\System.dll
- %APPDATA%\SearchIndexer\is-93ROC.tmp
- %APPDATA%\SearchIndexer\is-M4TMU.tmp
- %TEMP%\is-BLKHG.tmp\_isetup\_shfoldr.dll
- %APPDATA%\SearchIndexer\ModuleInno.exe
- %TEMP%\nsb3.tmp\Processes.dll
- %TEMP%\nsv2.tmp
- %APPDATA%\SearchIndexer\pthreadVC2.dll
- %APPDATA%\SearchIndexer\desktopsearchservice.exe
- %APPDATA%\SearchIndexer\cudart32_60.dll
- %TEMP%\nsb3.tmp\System.dll
- %TEMP%\nsb3.tmp\SimpleFC.dll
- %TEMP%\nsb3.tmp\Processes.dll
- %APPDATA%\SearchIndexer\is-93ROC.tmp в %APPDATA%\SearchIndexer\SearchIndexer2.exe
- %APPDATA%\SearchIndexer\is-M4TMU.tmp в %APPDATA%\SearchIndexer\SearchIndexer1.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''