Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SKYNETogrrntyx] 'start' = '00000001'
- [<HKLM>\SYSTEM\ControlSet001\Services\cbvspjkjinmdbymx] 'start' = '00000001'
- <SYSTEM32>\spoolsv.exe
- <DRIVERS>\cbvspjkjinmdbymx.sys
- <DRIVERS>\SKYNETujvrtbwq.sys
- %TEMP%\xnosecwxwh.tmp
- %TEMP%\pylqpuudkh.tmp
- '78.##.213.91':443