Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\sZjvtM] 'Start' = '00000002'
- C:\QQGameDl.exe
- <SYSTEM32>\svchost.exe -k netsvcs
- %WINDIR%\MySomeInfo.ini
- %WINDIR%\HowArMe.txt
- %WINDIR%\HowArMe.reg
- C:\QQGameDl.exe
- C:\Factory.dll
- %CommonProgramFiles%\Microsoft Shared\pFsNef.dll
- C:\QQGameDl.exe
- C:\Factory.dll
- %WINDIR%\MySomeInfo.ini
- %WINDIR%\HowArMe.txt
- %WINDIR%\HowArMe.reg
- 'cl####3.3322.org':1234
- DNS ASK cl####3.3322.org