Technical Information
- [<HKLM>\System\CurrentControlSet\Services\xud042] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\xud042] 'ImagePath' = '%CommonProgramFiles%\Microsoft Shared\MSINFO\jiao0901.exe'
- 'xud042' %CommonProgramFiles%\Microsoft Shared\MSINFO\jiao0901.exe
- %WINDIR%\syswow64\calc.exe
- iexplore.exe
- %CommonProgramFiles%\microsoft shared\msinfo\jiao0901.exe
- C:\autorun.inf
- C:\jiao0901.exe
- D:\autorun.inf
- D:\jiao0901.exe
- %WINDIR%\syswow64\_jiao0901.exe
- %CommonProgramFiles%\microsoft shared\msinfo\jiao0901.exe
- C:\autorun.inf
- C:\jiao0901.exe
- D:\autorun.inf
- D:\jiao0901.exe
- %WINDIR%\syswow64\_jiao0901.exe
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- ClassName: 'Static' WindowName: ''
- '%CommonProgramFiles%\microsoft shared\msinfo\jiao0901.exe'
- '%WINDIR%\syswow64\calc.exe'
- '%ProgramFiles%\internet explorer\iexplore.exe'