Техническая информация
- [<HKCU>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\] 'load' = '%APPDATA%\NVIDIA\IMAGIN~1.EXE '
- %APPDATA%\nvidia\imagingdevices.exe
- %APPDATA%\nvidia\fload.ocx
- %TEMP%\nvidia\tmpzb9g.tmp
- %APPDATA%\nvidia\setup.log
- 'localhost':8080
- DNS ASK D4##########################################################.####48612805E26460EECC00F2D3A1E2124B450D55CBA863870C2303031B.9006520C1B65191898807430B04428622863C804DA9CCAA0C010C0900864.650359...
- DNS ASK 18###########################################18241972114985F.2C1922812C4F062F065360F8E932B802C3D01248EA0255180343320C2863.C2E0020C5773A00A3F601D4C2D004ABB001E3A1A20.020001.us
- DNS ASK 00##00.us
- DNS ASK D4##########################################################.####81475141112F463DDB866558850D683FFEE662038104920F7666961D.98E5DF9DDD0F7376045CC8483B055C2BEE3D64FC39B1E5AAB15177EE357F.BD5F45...
- DNS ASK C2############################################A7731FD18E7B3B.89A4CE40634A8B3E3E0D6C16EA97262B453E435CE967D393864D595B198E.945C6AA54657BA7ACA18EB0F8E8ADFDDFD0219561C49.020001.us
- '%APPDATA%\nvidia\imagingdevices.exe'