Техническая информация
- [<HKLM>\SOFTWARE\Classes\Cad.Document\shell\open\command] '' = '<LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe "%1"'
- [<HKLM>\SYSTEM\ControlSet001\Services\NvUpdSrv] 'Start' = '00000002'
- '<LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe'
- '<LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe' /svc
- <LS_APPDATA>\NVIDIA Corporation\Update\nvupd32.exe
- %TEMP%\nsl3.tmp\System.dll
- %TEMP%\nsl2.tmp
- %TEMP%\nsl3.tmp\System.dll
- '91.##3.69.22':8000
- '91.##9.232.56':8000
- 'ck##.ethv.biz':8000
- '87.##6.69.18':8000
- 'zt##.dthv.biz':8000
- 'yi##.ethv.biz':8000
- DNS ASK ck##.ethv.biz
- DNS ASK vb##.axvf.biz
- DNS ASK zt##.dthv.biz
- DNS ASK yi##.ethv.biz