Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] 'shell' = 'explorer.exe,C:\Documents and Settings\360kill.exe'
- '<SYSTEM32>\regsvr32.exe' /s "<SYSTEM32>\svcmast.dll"
- C:\Documents and Settings\360kill.txt
- %HOMEPATH%\Desktop\Internet Explorer.lnk
- <SYSTEM32>\svcmast.dll
- C:\Documents and Settings\360kill.txt в C:\Documents and Settings\360kill.exe
- ClassName: 'Progman' WindowName: 'Program Manager'