Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Services\usbdevice] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\6to4] 'Start' = '00000002'
- <SYSTEM32>\Setupbak.log
- <SYSTEM32>\clasrtg.dll
- %TEMP%\AdvTemp.dll
- %TEMP%\LogFile.txt
- %TEMP%\AdvTemp.dll
- %TEMP%\LogFile.sys
- from <SYSTEM32>\Setupbak.log to <SYSTEM32>\winddk.sys
- from %TEMP%\LogFile.txt to %TEMP%\LogFile.sys