Техническая информация
- [<HKLM>\SOFTWARE\Classes\MSProgramGroup\Shell\Open\Command] '' = '<SYSTEM32>\grpconv.exe %1'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] 'GrpConv' = 'grpconv -o'
- [<HKLM>\SYSTEM\ControlSet001\Services\RpcEndPoint] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\RpcEndPoint] 'ImagePath' = '%WINDIR%\{819DA004-2016-4148-8C30-FD2B7DE07A49}\rpcepu~1.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\vboxdrv] 'Start' = '00000001'
- [<HKLM>\SYSTEM\ControlSet001\Services\vboxdrv] 'ImagePath' = 'system32\DRIVERS\vboxdrv.sys'
- %WINDIR%\{819DA004-2016-4148-8C30-FD2B7DE07A49}\rpcepu~1.exe
- %TEMP%\setuperr.log
- C:\System Volume Information\_restore{E7F0F64C-F7E5-4319-8757-E9A20C1C4E14}\fifo.log
- %WINDIR%\{819DA004-2016-4148-8C30-FD2B7DE07A49}\{0616BF7B-B1FC-4CEC-9241-306AF0B9D4FE}
- %TEMP%\vboxdrv.inf
- %TEMP%\vboxdrv.sys
- <DRIVERS>\SET3.tmp
- %TEMP%\vboxdrv.inf
- %TEMP%\vboxdrv.sys
- <DRIVERS>\SET3.tmp в <DRIVERS>\vboxdrv.sys
- '<SYSTEM32>\grpconv.exe' -o
- '<SYSTEM32>\runonce.exe' -r
- '<SYSTEM32>\rundll32.exe' SETUPAPI.DLL,InstallHinfSection DefaultInstall 128 %TEMP%\vboxdrv.inf