Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\360tray] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\360tray] 'ImagePath' = '<SYSTEM32>\svchost.exe -k 360tray'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\360tray\Parameters] 'ServiceDLL' = '%CommonProgramFiles%\microsoft shared\msinfo\DbGh28S7.dll'
- '360tray' <SYSTEM32>\svchost.exe -k 360tray
- Библиотека-обработчик для всех процессов: %CommonProgramFiles%\Microsoft Shared\msinfo\dbgh28s7.dll
- %CommonProgramFiles%\microsoft shared\msinfo\e4uayckhgl.ini
- %CommonProgramFiles%\microsoft shared\msinfo\dbgh28s7.dll
- 'tl###l.3322.org':8800
- DNS ASK tl###l.3322.org
- '%WINDIR%\syswow64\svchost.exe' -k 360tray
- '%WINDIR%\syswow64\rundll32.exe' c:\PROGRA~1\COMMON~1\MICROS~1\msinfo\dbgh28s7.dll,MainWork 360tray