Техническая информация
- [<HKLM>\SOFTWARE\Classes\lnkfile\shell\open\command] '' = '"%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE" http://www.1735dh.com/dianying/'
- [<HKLM>\SOFTWARE\Classes\Folder\shell\open\command] '' = ''
- %WINDIR%\regedit.exe /s ""%TEMP%\TempIE.reg""
- <SYSTEM32>\rundll32.exe advpack.dll,DelNodeRunDLL32 %HOMEPATH%\Start Menu\Programs\Internet Explorer.lnk
- <SYSTEM32>\rundll32.exe advpack.dll,DelNodeRunDLL32 %HOMEPATH%\Start Menu\家庭影院.lnk
- %TEMP%\TempIE.reg
- C:\RegTemp.txt
- %TEMP%\TempIE.reg
- C:\RegTemp.txt
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'Progman' WindowName: ''
- ClassName: 'SHELLDLL_DefView' WindowName: ''