Техническая информация
- [HKLM\System\CurrentControlSet\Services\cpuz158] 'ImagePath' = '%TEMP%\cpuz158\cpuz158_x64.sys'
- [HKLM\System\CurrentControlSet\Services\cpuz152] 'ImagePath' = '%TEMP%\cpuz152\cpuz152_x64.sys'
- 'cpuz158' %TEMP%\\cpuz158\cpuz158_x64.sys
- 'cpuz158' %TEMP%\cpuz158\cpuz158_x64.sys
- 'cpuz152' %TEMP%\\cpuz152\cpuz152_x64.sys
- 'cpuz152' %TEMP%\cpuz152\cpuz152_x64.sys
- %TEMP%\cpuz158\cpuz158_x64.sys
- %TEMP%\cpuz152\cpuz152_x64.sys
- %WINDIR%\temp\udda708.tmp
- <SYSTEM32>\lpcio.dll
- %TEMP%\cpuz158\cpuz158_x64.sys
- %WINDIR%\temp\udda708.tmp
- 'cp##d.com':443
- 'ti####.#imefreq.bldrdoc.gov':37
- 'ni###.##c.certifiedtime.com':37
- 'nt#####.uni-erlangen.de':37
- 'cp##d.com':443
- DNS ASK cp##d.com
- DNS ASK ti####.#imefreq.bldrdoc.gov
- DNS ASK ni###.##c.certifiedtime.com
- DNS ASK nt#####.uni-erlangen.de
- DNS ASK ni###.datum.com