Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Kernel Manager' = '<SYSTEM32>\krnlmgr.exe'
- <SYSTEM32>\krnlmgr.exe
- C:\Log.txt
- 'ir#.##imeirc.net':6667
- DNS ASK ir#.##imeirc.net
- ClassName: 'ConsoleWindowClass' WindowName: ''