Техническая информация
- %TEMP%\rarsfx0\egy8.com.txt
- %TEMP%\8a.tmp\b2e.dll
- %TEMP%\8a.tmp\b2e
- %TEMP%\rarsfx0\cards\fadly.mcd
- %TEMP%\rarsfx0\cards\fadly - copy.mcd
- %TEMP%\rarsfx0\data
- %TEMP%\rarsfx0\bios\scph7502.bin
- %TEMP%\rarsfx0\unicows.dll
- %TEMP%\rarsfx0\d3dx9_26.dll
- %TEMP%\rarsfx0\game.exe
- %TEMP%\rarsfx0\egy.exe
- %TEMP%\rarsfx0\utils\cdztool.exe
- %TEMP%\rarsfx0\psx.ini
- %TEMP%\rarsfx0\screenshots\screenshots_go_here.txt
- %TEMP%\rarsfx0\saves\put_saves_here.txt
- %TEMP%\rarsfx0\cards\put_memcards_here.txt
- %TEMP%\rarsfx0\cdimages\put_cdimages_here.txt
- %TEMP%\rarsfx0\htaccess.txt
- %TEMP%\8a.tmp\binaries.txt
- %TEMP%\8a.tmp\run game.exe.bat
- %TEMP%\8a.tmp\binaries.txt
- %TEMP%\8a.tmp\b2e
- ClassName: 'EDIT' WindowName: ''
- '%TEMP%\rarsfx0\game.exe'
- '%TEMP%\rarsfx0\egy.exe' -f data
- '%WINDIR%\syswow64\cmd.exe' /c ""%TEMP%\8A.tmp\Run Game.exe.bat""
- '%WINDIR%\syswow64\reg.exe' delete "HKCU\Software\Microsoft\Internet Explorer\Main" /V "START PAGE" /f
- '%WINDIR%\syswow64\reg.exe' ADD "HKCU\Software\Microsoft\Internet Explorer\Main" /V "START PAGE" /t REG_SZ /d http://www.eg##.com