Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Microsoft' = '"C:\Client.exe" '
- 'C:\Client.exe'
- '%TEMP%\CaiHong_Setup_1101.exe'
- 360tray.exe
- %TEMP%\nsj4.tmp\modern-wizard.bmp
- %TEMP%\nsj4.tmp\ioSpecial.ini
- %TEMP%\nsj4.tmp\modern-header.bmp
- C:\IsFive
- %TEMP%\nsj4.tmp\InstallOptions.dll
- %TEMP%\nsj4.tmp\exdll.dll
- C:\Client.exe
- %TEMP%\CaiHong_Setup_1101.exe
- %TEMP%\nsj4.tmp\InstallQQ.ini
- %TEMP%\nsj4.tmp\System.dll
- %TEMP%\nsj4.tmp\image.bmp
- 're####.caihongqq.com':80
- DNS ASK wo##s.cn
- DNS ASK re####.caihongqq.com
- 'wo##s.cn':19001
- ClassName: 'Shell_TrayWnd' WindowName: ''