Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] 'wextract_cleanup0' = 'rundll32.exe <SYSTEM32>\advpack.dll,DelNodeRunDLL32 "%TEMP%\IXP000.TMP\"'
- '%TEMP%\IXP000.TMP\DPInst.exe'
- <SYSTEM32>\DRVSTORE\fnetntusb_BE0D2CE19C7C07198B5F5651192D53B6967284F9\FNetNtUsb.cat
- <SYSTEM32>\DRVSTORE\fnetntusb_BE0D2CE19C7C07198B5F5651192D53B6967284F9\FNETNTUSB.sys
- %WINDIR%\DPINST.LOG
- <SYSTEM32>\DRVSTORE\fnetntusb_BE0D2CE19C7C07198B5F5651192D53B6967284F9\fnetntusb.inf
- %ProgramFiles%\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst.exe
- %ProgramFiles%\DIFX\Icons\5FAD0238D5C61B117CD1E97CA0F0D27240EDB3EE.ico
- %WINDIR%\inf\oem3.inf
- %WINDIR%\inf\oem3.PNF
- %TEMP%\IXP000.TMP\dpinst.xml
- %TEMP%\IXP000.TMP\Fluke.jpg
- %TEMP%\IXP000.TMP\DPInst.exe
- %TEMP%\IXP000.TMP\DPInst.SED
- %TEMP%\IXP000.TMP\FNetNtUsb.sys
- %TEMP%\IXP000.TMP\NT_connect_32.ico
- %TEMP%\IXP000.TMP\fnetntusb.cat
- %TEMP%\IXP000.TMP\FNetNtUsb.inf
- %TEMP%\IXP000.TMP\dpinst.xml
- %TEMP%\IXP000.TMP\Fluke.jpg
- %TEMP%\IXP000.TMP\DPInst.exe
- %TEMP%\IXP000.TMP\DPInst.SED
- %TEMP%\IXP000.TMP\FNetNtUsb.sys
- %TEMP%\IXP000.TMP\NT_connect_32.ico
- %TEMP%\IXP000.TMP\fnetntusb.cat
- %TEMP%\IXP000.TMP\FNetNtUsb.inf