Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_DLLs' = 'dfxh.dll,vfdh.dll,hjmasd.dll,aserg.dll,dfgwag.dll,zdhere.dll,sfjfth.dll,sefgj.dll,dbhgy.dll,mhgdfg.dll,sdvfrr.dll...
- <SYSTEM32>\spoolsv.exe
- %WINDIR%\Explorer.EXE
- Библиотека-обработчик для всех процессов: <SYSTEM32>\vfdh.dll
- Библиотека-обработчик для всех процессов: <SYSTEM32>\dfxh.dll
- 360tray.exe
- <SYSTEM32>\vfdh.dll
- %TEMP%\time124.tmp
- <SYSTEM32>\dfxh.dll
- <SYSTEM32>\vfdh.dll
- <SYSTEM32>\dfxh.dll
- DNS ASK h.###xxxx.cn
- ClassName: '' WindowName: 'QQ????1.5 ??????'
- ClassName: '' WindowName: 'QQТЅЙъ1.5 ХэКЅ°ж'
- ClassName: 'Q360SafeMainClass' WindowName: ''
- ClassName: '360AntiarpClass' WindowName: ''