Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_DLLs' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\lanmanserver] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\msert] 'Start' = '00000002'
- 360tray.exe
- NtMapViewOfSection, драйвер-обработчик: unknown
- %TEMP%\tmp3.tmp
- %TEMP%\tmp1.tmp
- C:\name.log
- C:\name.log
- %TEMP%\tmp2.tmp
- ClassName: '360AntiarpClass' WindowName: ''
- ClassName: 'Q360SafeMainClass' WindowName: ''