Техническая информация
- [<HKLM>\SOFTWARE\Classes\icofile\shell\Open\Command] '' = ''
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\МЪС¶ QQ.lnk
- %TEMP%\nsn3.tmp\ns5.tmp cmd.exe /c copy "%PROGRAM_FILES%\Tencent\МЪС¶QQ.lnk" "%ALLUSERSPROFILE%\Start Menu\Programs\Startup\МЪС¶ QQ.lnk" /y
- %TEMP%\nsn3.tmp\ns4.tmp cmd.exe /c copy "%PROGRAM_FILES%\Internet Explorer\Connection Wizard\sotpod.dat" "%ALLUSERSPROFILE%\Desktop\Internat Explorar.lnk" /y
- %TEMP%\nsn3.tmp\nsExec.dll
- %TEMP%\nsn3.tmp\ns4.tmp
- %PROGRAM_FILES%\Internet Explorer\Connection Wizard\seoic.icw
- %PROGRAM_FILES%\Internet Explorer\Connection Wizard\sotpod.dat
- %PROGRAM_FILES%\Tencent\МЪС¶QQ.lnk
- %TEMP%\nsn3.tmp\ns5.tmp
- %ALLUSERSPROFILE%\Desktop\Internat Explorar.lnk
- %PROGRAM_FILES%\Tencent\QQ\Bin\3579100.ico
- %ALLUSERSPROFILE%\Application Data\WD\kswbc.dll
- %ALLUSERSPROFILE%\Application Data\WD\kswebshield.dll
- %TEMP%\nsn2.tmp
- %TEMP%\nsn3.tmp\FindProcDLL.dll
- %WINDIR%\tbgw.ico
- %TEMP%\nsn3.tmp\AccessControl.dll
- %ALLUSERSPROFILE%\Application Data\WD\kwssp.dll
- %ALLUSERSPROFILE%\Application Data\WD\kwsui.dll
- %TEMP%\nsn3.tmp\ns4.tmp