Техническая информация
- '%WINDIR%\Temp\dhbho.exe'
- '<SYSTEM32>\regsvr32.exe' /s <SYSTEM32>\sanv\IEHELPER.dll
- '<SYSTEM32>\rundll32.exe' USER32.DLL,UpdatePerUserSystemParameters
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\7ZSfx000.cmd" "
- '<SYSTEM32>\regsvr32.exe' /s <SYSTEM32>\sanv\bho.dll
- %WINDIR%\Explorer.EXE
- <SYSTEM32>\sanv\BHO.dll
- <SYSTEM32>\sanv\krnln.fne
- <SYSTEM32>\sanv\IEHELPER.dll
- %TEMP%\7ZSfx000.cmd
- <SYSTEM32>\dhlogo.bmp
- <SYSTEM32>\oemlogo.bmp
- <SYSTEM32>\oeminfo.ini
- %WINDIR%\Web\Wallpaper\Wallpaper.bmp
- %WINDIR%\Temp\dhbho.exe
- %TEMP%\7ZSfx000.cmd
- %WINDIR%\Temp\dhbho.exe
- ClassName: 'MS_WINHELP' WindowName: ''