Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Update' = '%CommonProgramFiles%\UPDATE2\Update.exe'
- [<HKLM>\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1D901067-2529-4A9B-9B6B-7A1DB3A44CB5}] 'ClsidExtension' = '{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}'
- [<HKLM>\SYSTEM\ControlSet001\Services\Hardware] 'Start' = '00000002'
- '<SYSTEM32>\rundll32.exe' "<SYSTEM32>\mssapi.dll",ExportFunc 1001
- %CommonProgramFiles%\UPDATE2\update.exe
- %CommonProgramFiles%\UPDATE2\update.dat
- %PROGRAM_FILES%\kuzhan\uninst.exe
- <SYSTEM32>\nt.sys
- <SYSTEM32>\mssapi.dll
- %PROGRAM_FILES%\kuzhan\kuzhan.dll