Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'Load' = '%APPDATA%\Microsoft\BrokerInfrastructure.exe'
- audioendpointbuilder.exe
- %APPDATA%\microsoft\audioendpointbuilder.exe
- %APPDATA%\microsoft\brokerinfrastructure.exe
- %APPDATA%\imminent\logs\09-05-2020
- %APPDATA%\microsoft\audioendpointbuilder.exe
- DNS ASK ay#.####oidunlocknow.com
- '%APPDATA%\microsoft\brokerinfrastructure.exe'
- '%APPDATA%\microsoft\audioendpointbuilder.exe'