Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Sanser] 'Start' = '00000002'
- '%TEMP%\feiyoue.exe'
- '<SYSTEM32>\Servici.exe'
- %TEMP%\nsx4.tmp\ioSpecial.ini
- <SYSTEM32>\Servici.exe
- %TEMP%\nsx4.tmp\InstallOptions.dll
- %TEMP%\nsx4.tmp\modern-wizard.bmp
- %TEMP%\nsg2.tmp\SimpleSC.dll
- %TEMP%\setup_pp3.exe
- %TEMP%\nsg2.tmp\System.dll
- %TEMP%\feiyoue.exe
- <SYSTEM32>\tlntsvi.exe
- ClassName: 'Shell_TrayWnd' WindowName: ''