Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_DLLs' = ''
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] '' = ''
- %PROGRAM_FILES%\Ad-Remover\main.exe
- %PROGRAM_FILES%\Ad-Remover\res\Icons\uninstall.ico
- %PROGRAM_FILES%\Ad-Remover\res\Images\AboutImg.jpg
- %PROGRAM_FILES%\Ad-Remover\res\Icons\install.ico
- %PROGRAM_FILES%\Ad-Remover\res\Icons\ReadMe_Install.ico.txt
- %PROGRAM_FILES%\Ad-Remover\res\Icons\icon.ico
- %HOMEPATH%\Desktop\AD-R.lnk
- %PROGRAM_FILES%\Ad-Remover\Uninstall.exe
- %PROGRAM_FILES%\Ad-Remover\res\Images\Paypal-FR.jpg
- %PROGRAM_FILES%\Ad-Remover\res\Images\Logo.jpg
- %PROGRAM_FILES%\Ad-Remover\res\Images\Paypal-EN.jpg
- %PROGRAM_FILES%\Ad-Remover\bin\CTbUninstaller.exe
- %PROGRAM_FILES%\Ad-Remover\Erunt\ERDNTWIN.LOC
- %PROGRAM_FILES%\Ad-Remover\Erunt\ERUNT.LOC
- %PROGRAM_FILES%\Ad-Remover\Erunt\ERDNTDOS.LOC
- %PROGRAM_FILES%\Ad-Remover\main.exe
- %PROGRAM_FILES%\Ad-Remover\Erunt\ERDNT.E_E
- %PROGRAM_FILES%\Ad-Remover\Lang\Lang-FR.ini
- %PROGRAM_FILES%\Ad-Remover\Lang\Lang-NE.ini
- %PROGRAM_FILES%\Ad-Remover\Lang\Lang-EN.ini
- %PROGRAM_FILES%\Ad-Remover\Erunt\ERUNT.exe
- %PROGRAM_FILES%\Ad-Remover\Erunt\README.TXT
- из <Полный путь к вирусу> в %PROGRAM_FILES%\Ad-Remover\Backup\<Имя вируса>.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''