Техническая информация
- %WINDIR%\syswow64\svchost.exe
- %WINDIR%\syswow64\help\0202021dsfsd.ini
- %WINDIR%\syswow64\help\1.enqvowy
- %WINDIR%\syswow64\help\2.enqvowy
- %WINDIR%\syswow64\enqvowy\enqvowy\fhhtbeb\m.ini
- %WINDIR%\2.ini
- %WINDIR%\help\enqvowy.hlp
- %WINDIR%\syswow64\enqvowy\enqvowy\fhhtbeb\xfqfuya.exe
- <SYSTEM32>\spool\drivers\w32x86\3\nqvowye\nqvowye.exe
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye000.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye001.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye002.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye003.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye004.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye005.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye006.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye007.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye008.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye009.imd
- D:\recycler\s-1-5-18\dc8\nqvowye\nqvowye010.imd
- '%WINDIR%\syswow64\enqvowy\enqvowy\fhhtbeb\xfqfuya.exe' -close
- '%WINDIR%\syswow64\svchost.exe' -NetworkService
- '%WINDIR%\syswow64\enqvowy\enqvowy\fhhtbeb\xfqfuya.exe' -close (со скрытым окном)