Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{f92B23AB-A584-jE6B-XFgz-0000F87A469H}] 'StubPath' = '%APPDATA%\ZhYGAc\HjMDlt.exe'
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\svchost.exe
- ClassName: 'TXGuiFoundation', WindowName: 'µзДФ№ЬјТ - ІЎ¶ѕІйЙ±'
- ClassName: 'TXGuiFoundation', WindowName: '???????? - ????????'
- %WINDIR%\Fonts\RQID.ttf
- %WINDIR%\Fonts\HanQiuSheng.ttf
- %WINDIR%\Fonts\RunQiu.ttf
- %TEMP%\useless.tmp
- ClassName: '360ClassUploadFileNotify' WindowName: ''