Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Sonptit' = '%ALLUSERSPROFILE%\Start Menu\Programs\SonPtit\TaskManager.exe'
- <SYSTEM32>\hideFile.DLL
- <SYSTEM32>\HideRegistryA.dll
- <DRIVERS>\KProcCheck.sys
- <SYSTEM32>\testDLL.dll
- %ALLUSERSPROFILE%\Start Menu\Programs\SonPtit\TaskManager.exe
- <SYSTEM32>\Hook.dll
- <DRIVERS>\HideProc.sys
- %ALLUSERSPROFILE%\Start Menu\Programs\SonPtit\TaskManger.doc
- <DRIVERS>\HideProc.sys
- <DRIVERS>\KProcCheck.sys
- ClassName: '' WindowName: 'TaskManager'
- ClassName: 'Shell_TrayWnd' WindowName: ''