Техническая информация
- [<HKLM>\SOFTWARE\Classes\logpefile\shell\open\command] '' = '%PROGRAM_FILES%\WinRAR\Formats\scvhost.exe "%1" %*'
- '%PROGRAM_FILES%\WinRAR\Formats\scvhost.exe' ===|||<Полный путь к вирусу>
- '%WINDIR%\regedit.exe' /s "%PROGRAM_FILES%\WinRAR\Formats\my.reg"
- %PROGRAM_FILES%\WinRAR\Formats\my.reg
- %PROGRAM_FILES%\WinRAR\Formats\Information.ini
- %PROGRAM_FILES%\WinRAR\Formats\scvhost.exe
- ClassName: '#32770' WindowName: ''
- ClassName: 'SysListView32' WindowName: '??'
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'Windows ?????'