Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'ShStatEXE' = ''
- %TEMP%\1.tmp\srvsetup.exe
- %TEMP%\1.tmp\shlsetup.exe
- %TEMP%\1.tmp\regsetup.exe
- %TEMP%\1.tmp\sgcsetup.exe
- %TEMP%\1.tmp\plgsetup.exe
- %TEMP%\1.tmp\plfsetup.exe
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\McAfee\VirusScan Enterprise\SCRIPTSN.dll"
- <SYSTEM32>\net1.exe stop McTaskManager
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\McAfee\VirusScan Enterprise\VSUPDATE.dll"
- <SYSTEM32>\regsvr32.exe /u /s "%PROGRAM_FILES%\McAfee\VirusScan Enterprise\x64\SCRIPTSN.dll "
- <SYSTEM32>\net.exe stop mcshield
- <SYSTEM32>\cmd.exe /c ""%TEMP%\1.tmp\vse-uns.bat" <Текущая директория>\"
- <SYSTEM32>\net.exe stop McTaskManager
- <SYSTEM32>\net1.exe stop mcshield
- %TEMP%\1.tmp\srvsetup.exe
- %TEMP%\1.tmp\shlsetup.exe
- %TEMP%\1.tmp\sgcsetup.exe
- %TEMP%\1.tmp\vsep064.xml
- %TEMP%\1.tmp\vsep186.xml
- %TEMP%\1.tmp\vsep164.xml
- %TEMP%\1.tmp\vsep086.xml
- %TEMP%\1.tmp\regsetup.exe
- %TEMP%\1.tmp\dainp086.exe
- %TEMP%\1.tmp\dainp064.exe
- %TEMP%\1.tmp\vse-uns.bat
- %TEMP%\1.tmp\dainp164.exe
- %TEMP%\1.tmp\plgsetup.exe
- %TEMP%\1.tmp\plfsetup.exe
- %TEMP%\1.tmp\dainp186.exe