Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 'Shell' = 'EXPLORER.EXE %WINDIR%\Com\NVIDIA.VBE'
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{450B8FBA-AD25-11D0-98A8-0800361B1175}] 'stubpath' = ''
- %WINDIR%\Com\NVIDIA.EXE
- <SYSTEM32>\wscript.exe "%WINDIR%\Com\NVIDIA.VBE"
- %WINDIR%\Explorer.EXE
- %PROGRAM_FILES%\NVIDIA\NVDIAe.DLL
- %PROGRAM_FILES%\NVIDIA\NVDIAu.DLL
- %WINDIR%\Com\NVIDIA.EXE
- %TEMP%\setup.log
- %WINDIR%\Com\NVIDIA.VBE
- %TEMP%\setup.log
- 'yc####ss.3322.org':6380
- DNS ASK yc####ss.3322.org
- '<IP-адрес в локальной сети>':1036
- ClassName: '' WindowName: 'opjkropiaeklmaieee'