Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_DLLs' = '<SYSTEM32>\uzzevg.dll'
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'LoadAppInit_DLLs' = '00000001'
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_DLLs' = ''
- %WINDIR%\regedit.exe /S <SYSTEM32>\rg2203.reg
- %WINDIR%\regedit.exe /S <SYSTEM32>\rg1671.reg
- ClassName: 'TXGuiFoundation' WindowName: 'QQ????????'
- <SYSTEM32>\rg2203.reg
- <SYSTEM32>\rg1671.reg
- <SYSTEM32>\rg2203.reg
- <SYSTEM32>\rg1671.reg
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: '#32770' WindowName: 'QQ????????'
- ClassName: '#32770' WindowName: 'xwneom'
- ClassName: 'Shell_TrayWnd' WindowName: ''