Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '<Полный путь к вирусу>' = '<Полный путь к вирусу>:*:Enabled:Windows se...
- '<SYSTEM32>\regsvr32.exe' -s
- %ALLUSERSPROFILE%\IMEAM\sysinfo.cfg
- %ALLUSERSPROFILE%\IMEAM\software.cfg
- %ALLUSERSPROFILE%\IMEAM\itech.ini
- %ALLUSERSPROFILE%\IMEAM\config.ini
- %ALLUSERSPROFILE%\IMEAM\syslog.cfg
- %ALLUSERSPROFILE%\IMEAM\download_file_ext.cfg
- %TEMP%\DB\soft_run.tbl
- %ALLUSERSPROFILE%\IMEAM\dev_new.cfg
- %ALLUSERSPROFILE%\IMEAM\soft_mini.cfg
- %ALLUSERSPROFILE%\IMEAM\soft_new.cfg
- %ALLUSERSPROFILE%\IMEAM\soft_new.cfg в %ALLUSERSPROFILE%\IMEAM\soft_old.cfg
- %ALLUSERSPROFILE%\IMEAM\dev_new.cfg в %ALLUSERSPROFILE%\IMEAM\dev_old.cfg
- 'any':4926
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'ProcGuard'