Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002] 'PackedCatalogItem' = ''
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://www.xi##ye58.cn/
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\xyg[1].txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\xiaoye58[1]
- <SYSTEM32>\ESPI11.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\gg[1].htm
- 'localhost':1040
- 'www.xi##ye58.cn':80
- 'www.91##pwg.com':80
- 'localhost':1035
- 'dx##ome.com':80
- www.xi##ye58.cn/
- www.91##pwg.com/xyg.txt
- dx##ome.com/gg.htm
- DNS ASK www.xi##ye58.cn
- DNS ASK www.91##pwg.com
- DNS ASK dx##ome.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'CicLoaderWndClass' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''