Техническая информация
- [<HKLM>\SOFTWARE\Classes\CLSID\{38337839-4229-3099-9153-068063565684}\Shell\Open\Command] '' = '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://www.2345.com/?28879'
- '%WINDIR%\regedit.exe' /s C:/1.reg
- %WINDIR%\Explorer.EXE
- <SYSTEM32>\cmd.exe
- <SYSTEM32>\cmd.exe
- %TEMP%\A2B6.tmp
- C:\1.reg
- %TEMP%\A1CA.tmp
- %TEMP%\A276.tmp
- C:\1.reg
- %TEMP%\A2B6.tmp
- C:\1.reg
- %TEMP%\A1CA.tmp
- %TEMP%\A276.tmp
- DNS ASK do####ad.2345.cn
- DNS ASK dn#.##ftncsi.com
- DNS ASK do####ad.2345.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'RegEdit_RegEdit' WindowName: ''