Техническая информация
- '%TEMP%\temp\nocsj.exe'
- '%TEMP%\temp\wdbog.exe'
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n
- '<SYSTEM32>\taskkill.exe' /f /im nocsj.exe
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 3
- '<SYSTEM32>\cmd.exe' /c call nocsjZS.bat
- %WINDIR%\Explorer.EXE
- chrome.exe
- iexplore.exe
- %TEMP%\aut4.tmp
- %TEMP%\wipush.dll
- %TEMP%\_sdfw2311.dat
- %TEMP%\filter.dll
- <Текущая директория>\nocsjZS.bat
- %TEMP%\temp\nocsj.exe
- %TEMP%\aut2.tmp
- %TEMP%\kvomaga
- %TEMP%\aut1.tmp
- %TEMP%\dtongji.dll
- %TEMP%\aut3.tmp
- %TEMP%\temp\wdbog.exe
- %TEMP%\aut3.tmp
- %TEMP%\aut4.tmp
- %TEMP%\dtongji.dll
- %TEMP%\aut1.tmp
- %TEMP%\kvomaga
- %TEMP%\aut2.tmp
- 'lp####p.365doc.info':6000
- '60.##0.114.212':6000
- 'localhost':1045
- 'ip##.#aigou51.com':8899
- 'to####.baigou51.com':8899
- 'se#####.baigou51.com':5188
- DNS ASK lp####p.pk2012.info
- DNS ASK lp####p.pcdogs.info
- DNS ASK xu#.##login2.qq.com
- DNS ASK lp####p.365doc.info
- DNS ASK to####.baigou51.com
- DNS ASK ip##.#aigou51.com
- DNS ASK se#####.baigou51.com
- '25#.#55.255.255':6520
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'