Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\nikejrv] 'Start' = '00000001'
- %WINDIR%\winhlp32.exe -x
- %TEMP%\fwclt.exe
- <SYSTEM32>\winview.ocx
- <SYSTEM32>\pscm$.tmp
- <SYSTEM32>\mpdstate.bin
- <SYSTEM32>\commodule.dll
- <DRIVERS>\nikejrv.sys
- %TEMP%\77696E766965772E6F6378FA.tmp
- <SYSTEM32>\msidfn32.dll
- <SYSTEM32>\winstat0.pdr
- %TEMP%\77696E766965772E6F6378FA.tmp
- ClassName: 'MS_WINDOC' WindowName: ''
- ClassName: 'hcw_class' WindowName: ''
- ClassName: 'MS_WINHELP' WindowName: ''