Техническая информация
- <SYSTEM32>\xcopy.exe "Intrenet Explorer.lnk" "%HOMEPATH%\б╕┐к╩╝б╣▓╦╡е\" /s/y/r
- <SYSTEM32>\xcopy.exe "Intrenet Explorer.lnk" "%APPDATA%\Microsoft\Internet Explorer\Quick Launch\" /s/y/r
- <SYSTEM32>\reg.exe add "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main" /v "Start Page" /t reg_sz /d http://www.ha###3.com.cn/?wm /f
- <SYSTEM32>\xcopy.exe "Intrenet Explorer.lnk" "%HOMEPATH%\╫└├ц\" /s/y/r
- <SYSTEM32>\reg.exe add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel" /f /v "{871C5380-42A0-1069-A2EA-08002B30309D}" /t REG_DWORD /d 1
- <SYSTEM32>\reg.exe add "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu" /f /v "{871C5380-42A0-1069-A2EA-08002B30309D}" /t REG_DWORD /d 1
- <SYSTEM32>\xcopy.exe "Intrenet Explorer.lnk" "%HOMEPATH%\б╕┐к╩╝б╣▓╦╡е\│╠╨Є\" /s/y/r
- <SYSTEM32>\reg.exe delete HKCR\lnkfile /f /v IsShortcut
- %TEMP%\bt3133.bat
- %TEMP%\bt3133.bat
- ClassName: 'Shell_TrayWnd' WindowName: ''