Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\GameHelp] 'Start' = '00000002'
- '%PROGRAM_FILES%\GameRes\GameServer.exe'
- '%TEMP%\install-0003.exe' /y
- %PROGRAM_FILES%\GameRes\GameServer.exe
- %PROGRAM_FILES%\GameRes\config.ini
- %HOMEPATH%\Start Menu\Programs\游戏宝\游戏宝.lnk
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\install[1].php
- %HOMEPATH%\Start Menu\Programs\游戏宝\卸载游戏宝.lnk
- %PROGRAM_FILES%\GameRes\uninstall.exe
- %PROGRAM_FILES%\GameRes\GameHelp.exe
- %TEMP%\install-0003.exe
- %PROGRAM_FILES%\GameRes\GameRes.dll
- %PROGRAM_FILES%\GameRes\WebTool.exe
- %PROGRAM_FILES%\GameRes\Update.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\install[1].php
- 'ho#####.360xiaoshuo.info':5002
- 'ho#####.oldlist.info':5002
- 'ho####p.pk2012.info':5002
- 'ga#####.youxiservice.com':80
- ga#####.youxiservice.com/install.php?p=##########################################
- DNS ASK ho#####.oldlist.info
- DNS ASK ho#####.360xiaoshuo.info
- DNS ASK ga#####.youxiservice.com
- DNS ASK ho####p.pk2012.info
- '20#.#5.0.218':8000