Техническая информация
- [HKLM\System\CurrentControlSet\Services\TrueSight] 'ImagePath' = '<DRIVERS>\TrueSight.sys'
- 'TrueSight' <DRIVERS>\TrueSight.sys
- %ALLUSERSPROFILE%\roguekiller\config.ini
- %TEMP%\dllnt_dump.dll
- <DRIVERS>\truesight.sys
- 'ad##ce.com':80
- 'ad##ce.com':443
- http://ad##ce.com/softs/roguekiller/version.txt
- 'ad##ce.com':443
- DNS ASK ad##ce.com