Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'nbnvk' = '%WINDIR%\nbnvk.exe'
- '<SYSTEM32>\wermgr.exe' -queuereporting
- %TEMP%\desktope
- %WINDIR%\nbnvk.exe
- 'sm###.uol.com.br':587
- DNS ASK sm###.uol.com.br
- ClassName: 'Indicator' WindowName: '(null)'