Техническая информация
- [<HKLM>\SOFTWARE\Classes\CLSID\{3D3DBDD2-DD4D-B157-4264-0B0D4DD6BD46}\Shell\Open\Command] '' = '%PROGRAM_FILES%\Internet Explorer\iexplore.exe http://www.baidu.com'
- [<HKLM>\SOFTWARE\Classes\CLSID\{3D3DBDD2-DD4D-B157-4264-0B0D4DD6BD45}\Shell\Open\Command] '' = '%PROGRAM_FILES%\Internet Explorer\iexplore.exe http://www.tom155.cn/?1217'
- [<HKLM>\SOFTWARE\Classes\CLSID\{5B3CF2C3-BB2E-B124-4351-1B3D6CB6CD21}\Shell\Open\Command] '' = '%PROGRAM_FILES%\Internet Explorer\iexplore.exe http://www.97youku.com/?s1217'
- [<HKLM>\SYSTEM\ControlSet001\Services\Service For QQ] 'Start' = '00000002'
- %WINDIR%\system\svchost.exe /i
- <SYSTEM32>\cmd.exe /c C:\1.bat
- <SYSTEM32>\net1.exe start "Service For QQ"
- <SYSTEM32>\net.exe Stop "Service For QQ"
- <SYSTEM32>\net1.exe Stop "Service For QQ"
- %WINDIR%\system\svchost.exe
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
- C:\1.bat
- <SYSTEM32>\ntsvc.oca
- %WINDIR%\game.ico
- %WINDIR%\baidu01.ico
- <SYSTEM32>\NTSVC.ocx