Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\єЪ·АГвЙ±РЎЧйИєєЕ50636902] 'Start' = '00000002'
- '%WINDIR%\JHSADCGScdSJC.exe'
- 'C:\Зэ¶ЇјУФШ№¤ѕЯ.exe'
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://us##.#zone.qq.com/463723216/photo/V12zZV2H3xudJX/NDJ00NqjG4mTzlFSimI55Cm*nzUuAAA!/
- %WINDIR%\JHSADCGScdSJC.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\NDJ00NqjG4mTzlFSimI55Cm_nzUuAAA![1]
- C:\Зэ¶Ї.sys
- C:\Зэ¶ЇјУФШ№¤ѕЯ.exe
- %WINDIR%\JHSADCGScdSJC.exe
- C:\Зэ¶ЇјУФШ№¤ѕЯ.exe
- C:\Зэ¶Ї.sys
- C:\Зэ¶ЇјУФШ№¤ѕЯ.exe
- C:\Зэ¶Ї.sys
- '49##.3322.org':8000
- 'us##.#zone.qq.com':80
- 'localhost':1035
- us##.#zone.qq.com/463723216/photo/V12zZV2H3xudJX/NDJ00NqjG4mTzlFSimI55Cm*nzUuAAA!/
- DNS ASK 49##.3322.org
- DNS ASK us##.#zone.qq.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'QQLogin.exe'
- ClassName: '(null)' WindowName: 'Tensafe.exe'
- ClassName: '(null)' WindowName: 'TXPlatform.exe'