Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'hidisk_info' = '%PROGRAM_FILES%\hidisk_info\hidisk_info.exe'
- %PROGRAM_FILES%\hidisk_info\hidisk_info.exe 1
- %PROGRAM_FILES%\hidisk_info\hidisk_info_Setup.exe "/VERYSILENT"
- %PROGRAM_FILES%\hidisk_info\is-9INMQ.tmp
- %PROGRAM_FILES%\hidisk_info\is-JF78P.tmp
- %HOMEPATH%\Desktop\ГЦЅЕёрµО№Ю±в.lnk
- %PROGRAM_FILES%\hidisk_info\del_nsis_bat.cmd
- %PROGRAM_FILES%\hidisk_info\del_bat.cmd
- %TEMP%\is-P7A1R.tmp\is-D15QJ.tmp
- %PROGRAM_FILES%\hidisk_info\hidisk_info_Setup.exe
- %TEMP%\is-D720D.tmp\_isetup\_RegDLL.tmp
- %PROGRAM_FILES%\hidisk_info\is-0IJND.tmp
- %TEMP%\is-D720D.tmp\_isetup\_shfoldr.dll
- %PROGRAM_FILES%\hidisk_info\hidisk_info_Setup.exe
- %PROGRAM_FILES%\hidisk_info\del_nsis_bat.cmd
- %PROGRAM_FILES%\hidisk_info\del_bat.cmd
- %TEMP%\is-D720D.tmp\_isetup\_RegDLL.tmp
- %TEMP%\is-D720D.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-P7A1R.tmp\is-D15QJ.tmp
- 'ol##.co.kr':80
- ol##.co.kr/fs_hidisk_info/install_count.php?pi#######################################################################################
- ol##.co.kr/fs_hidisk_info/updater.php?c=################################################################
- DNS ASK ol##.co.kr
- ClassName: 'Shell_TrayWnd' WindowName: ''