Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\cqpptj] 'Start' = '00000002'
- <SYSTEM32>\svchost.exe -k cqpptj
- <SYSTEM32>\fzkulz.dll
- <SYSTEM32>\000503d4.001
- 'ca###a.oicp.net':80
- ca###a.oicp.net/20110811/165342/154750.jsp
- ca###a.oicp.net/20110811/165358/170984.jsp
- ca###a.oicp.net/20110811/165302/114984.jsp
- ca###a.oicp.net/20110811/165320/133062.jsp
- DNS ASK ca###a.oicp.net