Техническая информация
- %ALLUSERSPROFILE%\360antiasp.exe
- <SYSTEM32>\»¶АЦ¶·µШЦч.exe
- <SYSTEM32>\qq.exe
- <SYSTEM32>\regsvr32.exe /n /s /i:"-f 30C3B080-30FB-11d0-B724-00AA006C1A01 -f 7b8a2d95-0ac9-11d1-896c-00c04Fb6bfc4" "%CommonProgramFiles%\Microsoft Shared\DAO\DA0O2697.dll"
- <SYSTEM32>\net1.exe stop sharedaccess
- <SYSTEM32>\net.exe stop sharedaccess
- %TEMP%\TQZ818675.TMP
- %CommonProgramFiles%\Microsoft Shared\DAO\DA0O2697.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\ip2city[1].asp
- <SYSTEM32>\qq.exe
- <SYSTEM32>\»¶АЦ¶·µШЦч.exe
- %ALLUSERSPROFILE%\360antiasp.exe
- %TEMP%\TQZ818675.TMP
- <SYSTEM32>\qq.exe
- 'www.ip##8.com':80
- www.ip##8.com/ip2city.asp
- DNS ASK www.ip##8.com
- ClassName: '' WindowName: '??????'
- ClassName: '' WindowName: 'QQ?? - ?????'
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''