Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\hjgruiktakjmoe] 'start' = '00000001'
- [<HKLM>\SYSTEM\ControlSet001\Services\cbvtivksmqecqhyp] 'start' = '00000001'
- '<SYSTEM32>\spoolsv.exe'
- <DRIVERS>\cbvtivksmqecqhyp.sys
- <DRIVERS>\hjgruijbotvyxt.sys
- %TEMP%\muuqrxtabu.tmp
- %TEMP%\yfucrjqvlp.tmp