Техническая информация
- '<SYSTEM32>\down_s_74_430.exe'
- <LS_APPDATA>\liebao\Bootsetup\2.1.11.3341\74\boot_setup.pack.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\yy[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\cd07542159eb9add0e37f9ff[1]
- <SYSTEM32>\down_s_74_430.exe
- %TEMP%\send_b8c.gz
- %TEMP%\send_b8c.gz
- <LS_APPDATA>\liebao\Bootsetup\2.1.11.3341\74\boot_setup.pack
- <LS_APPDATA>\liebao\Bootsetup\2.1.11.3341\74\boot_setup.pack.tmp в <LS_APPDATA>\liebao\Bootsetup\2.1.11.3341\74\boot_setup.pack
- 'lb####.tj.ijinshan.com':80
- 'lb##.##ion.ijinshan.com':80
- '12#.#25.114.144':80
- 'localhost':1036
- 'yy.com':80
- yy.com/
- lb##.##ion.ijinshan.com/?pi#############################
- 12#.#25.114.144/hzhza86680521/item/cd07542159eb9add0e37f9ff
- lb####.tj.ijinshan.com/data/
- DNS ASK lb##.##ion.ijinshan.com
- DNS ASK www.td##.com
- DNS ASK www.52##eba.com
- DNS ASK yy.com
- DNS ASK hi.##idu.com
- DNS ASK lb####.tj.ijinshan.com
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'