Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'run' = '<DRIVERS>\nVIDIA\dll\rundll32.exe'
- [<HKLM>\SOFTWARE\Classes\irc\Shell\open\command] '' = '"<DRIVERS>\nVIDIA\dll\rundll32.exe" -noconnect'
- [<HKLM>\SOFTWARE\Classes\ChatFile\Shell\open\command] '' = '"<DRIVERS>\nVIDIA\dll\rundll32.exe" -noconnect'
- <DRIVERS>\nVIDIA\DLL\hex.exe "mIRC DB" /hide
- <DRIVERS>\nVIDIA\DLL\rundll32.exe
- %WINDIR%\msagent\agentsvr.exe -Embedding
- <DRIVERS>\nVIDIA\DLL\remote.ini
- <DRIVERS>\nVIDIA\DLL\mirc.ini
- <DRIVERS>\nVIDIA\DLL\regedit
- <DRIVERS>\nVIDIA\DLL\rundll32.exe
- <DRIVERS>\nVIDIA\DLL\greetz.txt
- <DRIVERS>\nVIDIA\DLL\Ai gasit progrmu`.txt
- <DRIVERS>\nVIDIA\DLL\mirc.GID
- <DRIVERS>\nVIDIA\DLL\hex.exe
- <DRIVERS>\nVIDIA\DLL\mirc.GID
- 'se.##akenet.org':6884
- 'se.##akenet.org':6926
- 'se.##akenet.org':6780
- 'de.##akenet.org':6663
- 'se.##akenet.org':6829
- 'de.##akenet.org':6665
- 'se.##akenet.org':6808
- 'se.##akenet.org':6855
- 'de.##akenet.org':6668
- 'de.##akenet.org':6662
- 'uk.##akenet.org':6667
- 'se.##akenet.org':6932
- 'de.##akenet.org':6667
- 'dk.##akenet.org':6667
- 'se.##akenet.org':6667
- DNS ASK se.##akenet.org
- DNS ASK dk.##akenet.org
- DNS ASK uk.##akenet.org
- DNS ASK de.##akenet.org
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''