Техническая информация
- firefox.exe
- %WINDIR%\otalm.txt
- http://12#.##9.36.209:6666/bb17818922152cdf8d9d9838527c8b40.txt via 12#.#99.36.209
- http://61.###.11.53:6666/59f5474b8a244d1f932877e443857f79.exe via 61.##0.11.53
- http://47.##.220.198:7896/0a0027000003.txt via 47.##.220.198
- http://ie###.kuaibu8.com/wzashun_1.htm
- http://ie###.kuaibu8.com/favicon.ico
- DNS ASK 60#####Z.adkuai8.com
- DNS ASK ww#####eam.2345cdn.net
- DNS ASK po#.#aidu.com
- DNS ASK ba##u.com
- DNS ASK ss#.#aidu.com
- DNS ASK gu###.#nion2.50bang.org
- DNS ASK cb##.baidu.com
- DNS ASK ti###i.2345.com
- DNS ASK 23##.com
- DNS ASK un####.50bang.org
- DNS ASK h.###5cdn.net
- DNS ASK li#.#345cdn.net
- DNS ASK ha##74.com
- DNS ASK ie###.kuaibu8.com
- DNS ASK im#.##nshion.com
- DNS ASK im##.#unshion.com
- '47.##.220.198':7896
- '<LOCALNET>.3.255':18691
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "<Полный путь к файлу>"
- '%ProgramFiles(x86)%\mozilla firefox\firefox.exe' http://ie###.kuaibu8.com/wzashun_1.htm