Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '360saft' = '%PROGRAM_FILES%\Internet Explorer\iexplre.exe'
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2012'
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2010'
- ClassName: '' WindowName: 'QQ.exe'
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2011'
- %TEMP%\21a66.tmp
- %TEMP%\215b2.tmp
- %TEMP%\2116b.tmp
- %TEMP%\21a66.tmp
- %TEMP%\215b2.tmp
- %TEMP%\2116b.tmp
- из <Полный путь к вирусу> в %PROGRAM_FILES%\Internet Explorer\iexplre.exe