Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'taskhost.exe' = '<DRIVERS>\taskhost.exe'
- '%WINDIR%\onhax-temp\iolosysmec\LOADER.exe'
- '%TEMP%\System Mechanic\System Mechanic Activator.exe'
- %WINDIR%\onhax-temp\iolosysmec\LOADER.exe
- %WINDIR%\onhax-temp\iolosysmec\GvrMgr.dll
- %WINDIR%\onhax-temp\iolosysmec\COMDLG32.OCX
- %WINDIR%\onhax-temp\iolosysmec\OR\GvrMgr.dll
- %WINDIR%\onhax-temp\iolosysmec\SystemGuardAlerter.exe
- %WINDIR%\onhax-temp\iolosysmec\System Mechanic Activator.exe
- %WINDIR%\onhax-temp\iolosysmec\OR\SystemGuardAlerter.exe
- <DRIVERS>\taskhost.exe
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\System Mechanic\System Mechanic Activator.exe
- %WINDIR%\onhax-temp\iolosysmec\COMDLG.cmd
- %TEMP%\System Mechanic\Uninstall.ini
- %TEMP%\System Mechanic\Uninstall.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''