Техническая информация
- <SYSTEM32>\reg.exe DELETE "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /f /v "Microsoft Windows DNS"
- <SYSTEM32>\ipconfig.exe /flushdns
- <SYSTEM32>\cmd.exe /c ""%WINDIR%\w2.bat" "
- <SYSTEM32>\findstr.exe /i /v "vk"
- %WINDIR%\w2.bat
- <DRIVERS>\etc\456
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- <DRIVERS>\etc\hosts
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''