Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'novags' = 'novagsx.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\novagsys] 'Start' = '00000001'
- '<SYSTEM32>\novagsx.exe'
- '<SYSTEM32>\regsvr32.exe' /s <SYSTEM32>\novacc.dll
- NtDeviceIoControlFile, драйвер-обработчик: novagsys.sys
- <SYSTEM32>\novacc.dll
- <DRIVERS>\novagsys.sys
- <SYSTEM32>\novaini.ini
- <SYSTEM32>\novagsun.exe
- <SYSTEM32>\novagsx.exe
- <SYSTEM32>\novags01.dll
- <SYSTEM32>\novags02.dll
- '22#.#39.74.153':80
- 22#.#39.74.153/novaversion_1030/novaini.ini
- ClassName: '' WindowName: 'PC-Clean'