Техническая информация
- %WINDIR%\Fonts\explore.exe
- %HOMEPATH%\My Documents\xplorse.exe
- <SYSTEM32>\ping.exe 127.0.0.1 -n 10
- firefox.exe
- iexplore.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\kk8yy[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\tuitan[1].html
- %HOMEPATH%\My Documents\xplorse.exe
- %WINDIR%\Fonts\explore.exe
- <DRIVERS>\etc\hosts
- 'localhost':1040
- 'www.66##.com':80
- 'www.ba##u.com':80
- 'localhost':1036
- 'www.kk##y.com':80
- 'localhost':1039
- www.ba##u.com/s?wd###################################################################################
- www.66##.com/wuye.html
- www.66##.com/520.html
- www.kk##y.com/
- www.66##.com/tuitan.html
- www.ba##u.com/
- DNS ASK www.52##m.com
- DNS ASK www.59##kk.com
- DNS ASK www.ba###pan.com
- DNS ASK www.87##w.com
- DNS ASK www.le##v.com
- DNS ASK www.dn##070.com
- DNS ASK www.66##.com
- DNS ASK www.kk##y.com
- DNS ASK www.ba##u.com
- DNS ASK www.33##dnf.com
- DNS ASK www.52##ilm.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''