Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'uHook' = '<DRIVERS>\SMSS.EXE'
- [<HKLM>\SYSTEM\ControlSet001\Services\djusblock] 'Start' = '00000002'
- <DRIVERS>\SMSS.EXE
- <DRIVERS>\djusblock.sys
- %TEMP%\xpplatinum.ini
- <DRIVERS>\iex.dll
- <DRIVERS>\djusblock.sys
- <DRIVERS>\SMSS.EXE
- <DRIVERS>\iex.dll
- %TEMP%\xpplatinum.ini
- ClassName: 'Shell_TrayWnd' WindowName: ''