Техническая информация
- <SYSTEM32>\dllcache\sethc.exe
- <SYSTEM32>\sethc.exe
- '<SYSTEM32>\attrib.exe' -s -a -h -r <SYSTEM32>\dllcache\sethc.exe
- '<SYSTEM32>\attrib.exe' -s -a -h -r <SYSTEM32>\dllcache\bysethc.exe
- '<SYSTEM32>\attrib.exe' +s +a +h +r <SYSTEM32>\set.exe
- '<SYSTEM32>\cmd.exe' /c ""%PROGRAM_FILES%\install.bat" "
- '<SYSTEM32>\attrib.exe' -s -a -h -r <SYSTEM32>\set.exe
- '<SYSTEM32>\attrib.exe' -s -a -h -r <SYSTEM32>\sethc.exe
- %PROGRAM_FILES%\1.exe
- <SYSTEM32>\dllcache\bysethc.exe
- <SYSTEM32>\set.exe
- %PROGRAM_FILES%\reg.txt
- %PROGRAM_FILES%\install.bat
- %PROGRAM_FILES%\jiereg.txt
- %PROGRAM_FILES%\On.reg
- <SYSTEM32>\set.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''