Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Base64Kernel' = '%PROGRAM_FILES%\Windows\Base65.exe'
- %PROGRAM_FILES%\Windows\Base64.exe
- %PROGRAM_FILES%\Windows\bfsvc.dll
- %PROGRAM_FILES%\Windows\SchCache.dll
- %PROGRAM_FILES%\Windows\SaveKernel.rsu
- %PROGRAM_FILES%\Windows\mib.bin
- %PROGRAM_FILES%\Windows\Base65.txt
- %PROGRAM_FILES%\Windows\Base64.txt
- %PROGRAM_FILES%\Windows\kernel.dll
- %PROGRAM_FILES%\Windows\winmain.exe
- %PROGRAM_FILES%\Windows\Base64.exe
- '19#.27.78.5':6667
- ClassName: 'Indicator' WindowName: ''