Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'MSMSGNER' = '<SYSTEM32>\hbzvh.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '<SYSTEM32>\hbzvh.exe' = '<SYSTEM32>\hbzvh.exe:*:Enabled:Winupd32'
- '<SYSTEM32>\hbzvh.exe'
- <SYSTEM32>\iaxcfg32.dll
- <SYSTEM32>\hbzvh.exe
- '20#.#86.92.216':48742
- '12#.#6.124.63':28393