Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\WinHrer32] 'Start' = '00000002'
- <SYSTEM32>\WinHvmv32.exe
- C:\Broodwar.exe
- %WINDIR%program.exe
- <SYSTEM32>\svchost.exe
- <SYSTEM32>\svchost.exe
- ClassName: 'pediy06' WindowName: ''
- ClassName: 'GBDYLLO' WindowName: ''
- ClassName: 'OLLYDBG' WindowName: ''
- <SYSTEM32>\WinHvmv32.exe
- C:\Broodwar.exe
- %WINDIR%program.exe
- <SYSTEM32>\WinHvmv32.exe
- %WINDIR%program.exe
- 'o8####t1.sytes.net':8001
- DNS ASK o8####t1.sytes.net
- ClassName: 'Shell_TrayWnd' WindowName: ''