Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\cRuCsffdHGi] 'ImagePath' = '<SYSTEM32>\27fa6\CDClient_EX.sys'
- [<HKLM>\SYSTEM\ControlSet001\Services\cRuCsffdHGi] 'ImagePath' = '\DosDevices\<SYSTEM32>\27fa6\CDClient_EX.sys'
- '<SYSTEM32>\cmd.exe' /c dir "<LS_APPDATA>\Mozilla\Firefox\Profiles\*.default" /B
- '<SYSTEM32>\cmd.exe' /C <SYSTEM32>\011204.bat
- <SYSTEM32>\27fa6\CDClient_EX.sys
- <SYSTEM32>\011204.bat
- <SYSTEM32>\CDCLOG.txt
- <SYSTEM32>\uDtvusv.dll
- <SYSTEM32>\CDCLOG.txt
- <SYSTEM32>\27fa6\CDClient_EX.sys
- ClassName: 'SysListView32' WindowName: 'FolderView'
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'SHELLDLL_DefView' WindowName: ''