Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\mkv4nergqm] 'Start' = '00000000'
- [<HKLM>\SYSTEM\ControlSet001\Services\mkv4nergqm] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\huao6] 'Start' = '00000002'
- <SYSTEM32>\wbem\wmiadap.exe /R /T
- <DRIVERS>\mkv4nergqm.sys
- <SYSTEM32>\e0a0.dll
- <DRIVERS>\huao6.sys
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %HOMEPATH%\Favorites\КХІШ.url
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini в <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.h в <SYSTEM32>\wbem\Performance\WmiApRpl.h
- 'tm#.#arfly.org':80
- tm#.#arfly.org/rpt103p60000
- tm#.#arfly.org/rpt5p60000
- DNS ASK tm#.#arfly.org