Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'QQ°ІИ«·А»¤ДЈїй' = '%CommonProgramFiles%\Tencent\svchost.exe'
- %CommonProgramFiles%\Tencent\svchost.exe Ts:1
- <SYSTEM32>\taskkill.exe /f /im QQ.exe
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2011'
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2010'
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2013'
- ClassName: 'TXGuiFoundation' WindowName: 'QQ2012'
- %CommonProgramFiles%\Tencent\svchost.exe
- %CommonProgramFiles%\Tencent\svchost.exe
- %CommonProgramFiles%\Tencent\svchost.exe.QQ
- 'vi####g.svfree.net':80
- vi####g.svfree.net/td/mail.asp?ad#####################################################
- DNS ASK vi####g.svfree.net
- ClassName: '' WindowName: ''