Техническая информация
- <SYSTEM32>\svcwin.exe /start
- <SYSTEM32>\svcwin.exe /i
- <SYSTEM32>\svcwin.da.exe /stop
- %WINDIR%\explorer.exe
- %PROGRAM_FILES%\Wizeni\uninst.exe
- %PROGRAM_FILES%\Wizeni\wizenir.exe.da
- %PROGRAM_FILES%\Wizeni\wizenis.da
- %PROGRAM_FILES%\Wizeni\wizenir.exe.da_
- %TEMP%\Temporary Internet Files\Content.IE5\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\A9D82BAV\desktop.ini
- %TEMP%\History\History.IE5\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\0TIBG16J\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\GDQLATUJ\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\HW15BHZN\desktop.ini
- %TEMP%\nsi2.tmp\wizenis.da_
- %TEMP%\nsi2.tmp\wizenis.dll
- %TEMP%\nsi2.tmp\nsProcEx.dll
- %TEMP%\nsi2.tmp\SelfDel.dll
- %TEMP%\nsi2.tmp\System.dll
- %TEMP%\nsi2.tmp\nsProcess.dll
- %PROGRAM_FILES%\Wizeni\wizenib.da
- %PROGRAM_FILES%\Wizeni\wizenis.da_
- %PROGRAM_FILES%\Wizeni\wizenib.da_
- <SYSTEM32>\svcwin.da_
- <SYSTEM32>\svcwin.da
- %TEMP%\Temporary Internet Files\Content.IE5\0TIBG16J\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\A9D82BAV\desktop.ini
- %TEMP%\History\History.IE5\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\GDQLATUJ\desktop.ini
- %TEMP%\Temporary Internet Files\Content.IE5\HW15BHZN\desktop.ini
- %PROGRAM_FILES%\Wizeni\wizenis.da_
- %PROGRAM_FILES%\Wizeni\wizenir.exe.da_
- %PROGRAM_FILES%\Wizeni\wizenib.da_
- %TEMP%\nsi2.tmp\wizenis.da_
- <SYSTEM32>\svcwin.da_