Техническая информация
- '<SYSTEM32>\reg.exe' ADD "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Taskband" /v "FavoritesVersion" /t REG_DWORD /d "3" /f
- '<SYSTEM32>\reg.exe' ADD "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Taskband" /v "FavoritesChanges" /t REG_DWORD /d "38" /f
- '<SYSTEM32>\taskkill.exe' /F /IM EXPLORER.EXE
- '<SYSTEM32>\reg.exe' ADD "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Taskband" /v "FavoritesRemovedChanges" /t REG_DWORD /d "0" /f
- '<SYSTEM32>\xcopy.exe' /Q /Y /I "%TEMP%\Taskbar\*.lnk" "%APPDATA%\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar"
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\TaskBand.cmd" <Полный путь к файлу>"
- '<SYSTEM32>\reg.exe' ADD "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Taskband" /v "Favorites" /t REG_BINARY /d "00cc0100003a001f80c827341f105c1042aa032ee45287d668260001002500efbe1200000063655ab970c5d10...
- '<SYSTEM32>\reg.exe' ADD "HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Taskband" /v "FavoritesResolve" /t REG_BINARY /d "720300004c0000000114020000000000c0000000000000468300800020000000c338080c7ec5d101c3...
- %WINDIR%\Explorer.EXE
- %TEMP%\1.tmp\TaskBand.cmd
- ClassName: '' WindowName: ''