Technical Information
- [HKLM\System\CurrentControlSet\Services\DgE4xQQ] 'ImagePath' = '%WINDIR%\DgE4xQQ.sys'
- 'DgE4xQQ' %WINDIR%\\DgE4xQQ.sys
- 'DgE4xQQ' %WINDIR%\DgE4xQQ.sys
- %WINDIR%\zdm.dll
- %WINDIR%\dge4xqq.sys
- %WINDIR%\temp\udda8b.tmp
- %WINDIR%\zdm.dll
- <Full path to file>
- %WINDIR%\temp\udda8b.tmp
- %WINDIR%\dge4xqq.sys
- '11#.#31.77.169':7438
- '11#.#31.77.169':7438