Technical Information
- [<HKLM>\SYSTEM\CurrentControlSet\Services\Driver] 'ImagePath' = '%ProgramFiles%\Driver.sys'
- 'Driver' %ProgramFiles%\Driver.sys
- %ProgramFiles%\driver.sys
- %ProgramFiles%\memory.dll
- %ProgramFiles(x86)%\steam\msacm32.drv
- %ProgramFiles(x86)%\steam\msacm32.drv
- from %ProgramFiles%\driver.sys to %TEMP%\1131943\....\temporaryfile
- from %ProgramFiles%\memory.dll to %TEMP%\1131943\....\temporaryfile
- '10#.#3.189.183':88
- http://10#.##.189.183:88/Msacm32.drv via 10#.#3.189.183