Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\vsfocevymkmlrq] 'start' = '00000001'
- [<HKLM>\SYSTEM\ControlSet001\Services\enxbqhwhorapbvsb] 'start' = '00000001'
- '<SYSTEM32>\msiexec.exe' /V
- <DRIVERS>\enxbqhwhorapbvsb.sys
- <DRIVERS>\vsfocejejkltpy.sys
- %TEMP%\qipmtvxtus.tmp
- %TEMP%\pikfpxoixf.tmp