Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\TrueSight] 'ImagePath' = '<DRIVERS>\TrueSight.sys'
- 'TrueSight' <DRIVERS>\TrueSight.sys
- %ALLUSERSPROFILE%\roguekiller\config.ini
- %TEMP%\dllnt_dump.dll
- <DRIVERS>\truesight.sys
- %WINDIR%\temp\udd4cf7.tmp
- %WINDIR%\temp\udd4cf7.tmp
- http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
- http://ad##ce.com/softs/roguekiller/version.txt
- http://oc##.#tartssl.com/sub/class2/code/ca/MEMwQTA%2FMD0wOzAJBgUrDgMCGgUABBQSOgrhRCSnWfKxoWTjWxhk8hga9AQU0E4PQJlsuEsZbzsouODjiAc0qrcCAhAV
- DNS ASK microsoft.com
- DNS ASK ad##ce.com
- DNS ASK oc##.#tartssl.com