Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\420a0a1f] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\neverdeath] 'Start' = '00000002'
- <SYSTEM32>\ws2help.dll файлом <SYSTEM32>\ws2help.dll
- '%TEMP%\vJEHjZR.exe'
- ClassName: 'OLLYDBG' WindowName: '(null)'
- ClassName: 'FileMonClass' WindowName: '(null)'
- <DRIVERS>\420a0a1f.sys
- <SYSTEM32>\ws2helpXP.dll
- %TEMP%\vJEHjZR.exe
- <DRIVERS>\xpV3001.sys
- %TEMP%\vJEHjZR.exe
- <SYSTEM32>\ws2help.dll в <SYSTEM32>\ws2help.dll.En3.tmp
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '18467-41' WindowName: '(null)'