Technical Information
- [<HKLM>\System\CurrentControlSet\Services\mseqsy] 'ImagePath' = '<DRIVERS>\msacpe.sys'
- [<HKLM>\System\CurrentControlSet\Services\ZX] 'ImagePath' = '%TEMP%\tmpAFA.tmp'
- 'mseqsy' <DRIVERS>\msacpe.sys
- 'ZX' %TEMP%\tmpAFA.tmp
- %WINDIR%\syswow64\naixuhz.dll
- C:\name.log
- %TEMP%\tmpae9.tmp
- %WINDIR%\temp\uddeef.tmp
- %WINDIR%\temp\uddeef.tmp
- from %TEMP%\tmpae9.tmp to %TEMP%\tmpafa.tmp
- ClassName: '' WindowName: 'Æ滢360°²È«ÎÀÊ¿'
- ClassName: 'Q360SafeMainClass' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c del "<Full path to file>"' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c del "<Full path to file>"