Техническая информация
- '%WINDIR%\UnRAR.exe' e -pwlzhang EXT1.IMG -y
- '%WINDIR%\MainPro.exe'
- '<SYSTEM32>\ping.exe' 127.1 -n 1
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ad####.dnsorg.net/index1.html
- '<SYSTEM32>\wscript.exe' "%WINDIR%\taskrun.vbs"
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\taskrun.cmd" "
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\GameList[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\index1[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\url.cnk.com[1].htm
- %WINDIR%\UnRAR.exe
- %WINDIR%\MainPro.exe
- %WINDIR%\taskrun.cmd
- %WINDIR%\taskrun.vbs
- %WINDIR%\taskrun.vbs
- %WINDIR%\taskrun.cmd
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\GameList[1].html
- 'localhost':1043
- 'localhost':1044
- 'ur#.#nk.com.cn':80
- 'up####.cnk.com.cn':80
- 'localhost':1041
- 'ad####.dnsorg.net':80
- ad####.dnsorg.net/index1.html
- up####.cnk.com.cn/GameList.html
- DNS ASK ur#.#nk.com.cn
- DNS ASK co###.cnk.com.cn
- DNS ASK ad####.dnsorg.net
- DNS ASK up####.cnk.com.cn
- '10.##5.255.255':26010
- ClassName: '' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'EDIT' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'AnnexPro'