Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'CdnCtr' = ''
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SearchNet_Up' = '"%PROGRAM_FILES%\SearchNet\ServeUp.exe"'
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\CNNIC\Cdn\wmhlpr.dll"
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\CNNIC\Cdn\iesrch.dll"
- <SYSTEM32>\regsvr32.exe /u /s "<SYSTEM32>\cdnns.dll"
- <SYSTEM32>\regsvr32.exe /u /s "<SYSTEM32>\cdn.dll"
- <SYSTEM32>\cacls.exe "%PROGRAM_FILES%\HuaCi" /T /E /P "everyone":f
- <SYSTEM32>\cacls.exe "%PROGRAM_FILES%\SearchNet" /T /E /P "everyone":f
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\CNNIC\Cdn\cdnforie.dll"
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\CNNIC\Cdn\cdniehlp.dll"