Техническая информация
- %WINDIR%\syswow64\svchost.exe
- 'ip.##0cha.com':443
- '19#.#51.151.43':80
- '19#.#51.151.43':81
- 'co##############e-chains.prod.autograph.services.mozaws.net':443
- http://19#.#51.151.43/images/xiao/dytongji.jpg
- http://19#.##1.151.43:81/tongji2.php?us####################################################################### via 19#.#51.151.43
- 'ip.##0cha.com':443
- DNS ASK ip.##0cha.com
- DNS ASK co##############e-chains.prod.autograph.services.mozaws.net
- '%WINDIR%\syswow64\svchost.exe'