Техническая информация
- [<HKLM>\SYSTEM\CONTROLSET003\Services\prhzkb] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet002\Services\prhzkb] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\prhzkb] 'Start' = '00000002'
- <SYSTEM32>\svchost.exe -k prhzkb
- <SYSTEM32>\bxydnt.exe
- <SYSTEM32>\000460fb.sys
- '16#.#54.117.254':8000