Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '360Цч¶Ї·АУщ.exe' = '<SYSTEM32>\360Цч¶Ї·АУщ.exe'
- '<SYSTEM32>\PPTV(pplive)_forjieku_72790.exe'
- '<SYSTEM32>\PPTV(pplive)_forjieku_72790.exe' (загружен из сети Интернет)
- <SYSTEM32>\360Цч¶Ї·АУщ.exe
- <SYSTEM32>\PPTV(pplive)_forjieku_72790.exe
- 'u.##363.com':80
- u.##363.com/pplfjk/PPTV(pplive)_forjieku_72790.exe
- DNS ASK u.##363.com
- ClassName: 'Shell Embedding' WindowName: ''
- ClassName: 'Shell DocObject View' WindowName: ''
- ClassName: 'Internet Explorer_Server' WindowName: ''
- ClassName: 'PPLiveGUI' WindowName: 'PPTV'
- ClassName: 'ATL:0FE41190' WindowName: 'IEBrowserWindow'
- ClassName: 'AtlAxWin100' WindowName: ''