Техническая информация
- %TEMP%\1.tmp
- 'localhost':1036
- 'localhost':1037
- 'fx#.la':80
- 'do##an.com':443
- 'ra#.####ubusercontent.com':443
- 'my####ication.top':80
- 'ls###960417.com':80
- 'ls###960417.cn':80
- http://www.fx#.la/?66###### via fx#.la
- http://www.my####ication.top/adcheatReserved/test_ed_403.html via my####ication.top
- http://www.ls###960417.com/adcheatReserved/test_ed_403.html via ls###960417.com
- http://www.ls###960417.cn/adcheatReserved/test_ed_403.html via ls###960417.cn
- DNS ASK www.fx#.la
- DNS ASK www.do##an.com
- DNS ASK ra#.####ubusercontent.com
- DNS ASK www.my####ication.top
- DNS ASK www.ls###960417.com
- DNS ASK www.ls###960417.cn
- ClassName: '' WindowName: 'Microsoft Internet Explorer'
- ClassName: '' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome