Техническая информация
- '<SYSTEM32>\comime.exe'
- '<SYSTEM32>\reg.exe' delete "hklm\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\IEActive" /f
- %TEMP%\155796_res.tmp
- %WINDIR%\IEActive.ini
- %WINDIR%\ActiveSeting.ini
- <SYSTEM32>\comime.exe
- %TEMP%\155796_res.tmp
- 'a9####3.gicp.net':3369
- DNS ASK a9####3.gicp.net
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'