Техническая информация
- [<HKLM>\SOFTWARE\Classes\Applications\iexplore.exe\shell\open\command] '' = '"%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE" %1'
- [<HKLM>\SOFTWARE\Classes\Spiralmonkey.DreamAquarium.1\shell\Open\command] '' = '"\Windows\System32\ErrorsAndUpdates.exe" "%1"'
- '<SYSTEM32>\reg.exe' delete HKEY_CLASSES_ROOT\.bmp\ShellNew /f
- '<SYSTEM32>\reg.exe' delete HKEY_CLASSES_ROOT\.rar\ShellNew /f
- '<SYSTEM32>\reg.exe' delete HKEY_CLASSES_ROOT\.zip\ShellNew /f
- '<SYSTEM32>\reg.exe' Add "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main" /v "Default_Page_URL" /t REG_SZ /d "http://www.ex##.com" /f
- '<SYSTEM32>\cmd.exe' /c "%CommonProgramFiles%\Services\UQixpOP.bat"
- '<SYSTEM32>\reg.exe' delete "HKCU\Software\Policies\Microsoft\Internet Explorer\Main" /f /v "Start Page"
- '<SYSTEM32>\reg.exe' Add "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main" /v "Start Page" /t REG_SZ /d "http://www.ex##.com" /f
- %CommonProgramFiles%\Services\UQixpOP.bat
- %TEMP%\aut3.tmp
- %CommonProgramFiles%\Services\UQixp.bat
- %TEMP%\aut1.tmp
- %CommonProgramFiles%\Services\uqixp.reg
- %TEMP%\aut2.tmp
- %TEMP%\aut3.tmp
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''