Техническая информация
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\online[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\tongji[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\login[1].do
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\tongji[1].asp
- 'co###.knowsky.com':80
- 'lm####.3vfree.us':80
- 'ud####in.duowan.com':80
- 'localhost':1036
- 'if####.ip138.com':80
- lm####.3vfree.us/online.asp
- lm####.3vfree.us/1/tongji.asp
- co###.knowsky.com/count2/count.asp?id#################
- if####.ip138.com/ic.asp
- ud####in.duowan.com/login.do?ga#####################################################
- DNS ASK co###.knowsky.com
- DNS ASK lm####.3vfree.us
- DNS ASK if####.ip138.com
- DNS ASK ud####in.duowan.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'