Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 'Userinit' = 'userinit.exe,sys.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'blank' = '<SYSTEM32>\blank.htm'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'vxds' = '%WINDIR%\vxds.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'hlps' = '%WINDIR%\Help\hlps.exe'
- скрытых файлов
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoFolderOptions' = '00000001'
- [<HKCU>\Software\Microsoft\Internet Explorer\Main] 'Window Title' = 'Microsoft Internet Explorer [Day of judgment]'
- %WINDIR%\Help\hlps.exe
- <SYSTEM32>\blank.htm
- <SYSTEM32>\sys.exe
- %WINDIR%\vxds.exe
- %WINDIR%\Help\hlps.exe
- <SYSTEM32>\blank.htm
- <SYSTEM32>\sys.exe
- %WINDIR%\vxds.exe
- ClassName: 'Indicator' WindowName: ''