Техническая информация
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\QIYILittle_02_07[1].exe /norestart
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\QIYILittle_02_07[1].exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\QIYILittle_02_07[1].exe
- 'st###c.qiyi.com':80
- 'localhost':1039
- 'ms#.##deo.qiyi.com':80
- ms#.##deo.qiyi.com/?me############################################################################
- st###c.qiyi.com/ext/common/iQIYI/QIYILittle_02_07.exe
- ms#.##deo.qiyi.com/?me#########################################################################
- DNS ASK st###c.qiyi.com
- DNS ASK ms#.##deo.qiyi.com
- ClassName: 'Shell_TrayWnd' WindowName: ''