Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\hhhhhhh] 'Start' = '00000002'
- '<SYSTEM32>\vmware-vmx.exe'
- ClassName: 'OLLYDBG' WindowName: '(null)'
- %WINDIR%\Temp\8BD0F9B1
- <SYSTEM32>\vmware-vmx.exe
- %TEMP%\8BD0F9B1
- 'any':8091
- 'rq####13.no-ip.org':8091
- DNS ASK rq####13.no-ip.org