Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'NviGForce' = 'wscript.exe "C:\Microsoft_SDK\lib\include\cc1xj.js"'
- C:\Microsoft_SDK\lib\include\cc1xj.js
- C:\Microsoft_SDK\lib\include\cc1xj.cmd
- C:\Microsoft_SDK\lib\include\iexploror.exe
- 'vr#######4.letgodasockweb.com':7018
- '25#.#55.255.255':7018
- 'nb#######1.letgodasockweb.com':7018
- DNS ASK df#######3.letgodasockweb.com
- DNS ASK vr#######4.letgodasockweb.com
- DNS ASK nb#######1.letgodasockweb.com
- DNS ASK kx#######2.letgodasockweb.com
- ClassName: 'Indicator' WindowName: ''