Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\s71lagu] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\s71lagu] 'ImagePath' = '<DRIVERS>\s71lagu.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\s71lagu] 'ImagePath' = 'system32\drivers\s71lagu.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\s71lagu] 'Start' = '00000000'
- [<HKLM>\System\CurrentControlSet\Services\i5a9t] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\i5a9t] 'ImagePath' = '<DRIVERS>\i5a9t.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\i5a9t] 'ImagePath' = 'system32\drivers\i5a9t.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\i5a9t] 'Start' = '00000000'
- 's71lagu' <DRIVERS>\s71lagu.sys
- 'i5a9t' <DRIVERS>\i5a9t.sys
- %HOMEPATH%\favorites\êõ²ø.url
- %WINDIR%\syswow64\drivers\s71lagu.sys
- %WINDIR%\syswow64\drivers\i5a9t.sys
- %WINDIR%\syswow64\4novaly.dll
- DNS ASK tm#.#arfly.org