Техническая информация
- <SYSTEM32>\cmd.exe /c """%TEMP%\t.bat"" "
- <SYSTEM32>\runonce.exe -r
- ClassName: 'Filemonclass' WindowName: ''
- ClassName: 'Regmonclass' WindowName: ''
- <SYSTEM32>\wbem\wmiprvse.exe
- %PROGRAM_FILES%\MSDN\atixi.inf
- <DRIVERS>\SET4.tmp
- %WINDIR%\inf\oem15.PNF
- %WINDIR%\inf\oem16.inf
- %TEMP%\t.bat
- <DRIVERS>\SET7.tmp
- %WINDIR%\inf\oem16.PNF
- %PROGRAM_FILES%\MSDN\000000000
- %PROGRAM_FILES%\MSDN\atixx.sys
- %TEMP%\SE1.tmp
- %PROGRAM_FILES%\MSDN\atixx.inf
- %WINDIR%\inf\oem15.inf
- %PROGRAM_FILES%\MSDN\000000001
- %PROGRAM_FILES%\MSDN\atixi.sys
- %PROGRAM_FILES%\MSDN\atixi.sys
- %PROGRAM_FILES%\MSDN\atixx.inf
- %PROGRAM_FILES%\MSDN\000000001
- %TEMP%\SE1.tmp
- %PROGRAM_FILES%\MSDN\atixx.sys
- 'ad.##odcom.com':8881
- DNS ASK ad.##odcom.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- ClassName: '4823-00000029' WindowName: ''