Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\pszuyz75] 'Start' = '00000000'
- <SYSTEM32>\rundll32.exe "<SYSTEM32>\\pszuyz75.dll",DllCanUnloadNow
- %WINDIR%\Explorer.EXE
- <SYSTEM32>\pszuyz75.dll
- <DRIVERS>\pszuyz75.sys
- %TEMP%\tmp1.CAB
- %TEMP%\tmp2.CAB
- %TEMP%\tmp2.CAB
- %TEMP%\tmp1.CAB