Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '912AC67EBBBAD89EBCA8B3C44AFE77' = '"%APPDATA%\BRLOTNUEBP.exe"'
- %WINDIR%\syswow64\svchost.exe
- ClassName: 'VBoxTrayToolWndClass', WindowName: ''
- ClassName: '', WindowName: 'VBoxTrayToolWnd'
- %APPDATA%\brlotnuebp.exe
- 'sy####f0rum86.ru':80
- DNS ASK sy####f0rum86.ru
- DNS ASK fo###host072.pw
- DNS ASK k6###rumxc14.ru
- '%WINDIR%\syswow64\svchost.exe'