Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Okny' = 'regsvr32.exe /s %APPDATA%\Utet\uvaz.dll'
- %WINDIR%\syswow64\msiexec.exe
- %APPDATA%\utet\uvaz.dll
- 'st####tsclasses.com':443
- 'bo####g-king.com':443
- DNS ASK st####tsclasses.com
- DNS ASK bo####g-king.com
- '%WINDIR%\syswow64\msiexec.exe'