Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '360safe' = '<SYSTEM32>\360tray.exe'
- '<SYSTEM32>\360tray.exe'
- '<SYSTEM32>\pic.exe'
- %TEMP%\E_N4\eAPI.fne
- %TEMP%\E_N4\internet.fne
- %TEMP%\E_N4\spec.fne
- <SYSTEM32>\360tray.exe
- %TEMP%\E_N4\krnln.fnr
- %TEMP%\E_N4\shell.fne
- <SYSTEM32>\pic.exe
- 'www.so##60.com':80
- '12#.#25.114.144':80
- www.so##60.com/wb/tongji/tongji.asp?pu##################################
- www.so##60.com/wb/go.txt
- 12#.#25.114.144/
- DNS ASK www.so##60.com
- DNS ASK www.ba##u.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'