Техническая информация
- '%PROGRAM_FILES%\play_2061_8358.exe' (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\sina168[1]
- 'do##.zzha.net':80
- '13######13.liulanwangye.com':80
- 'www.cs##men.com':80
- 'jl####r.jieku.com':80
- 'cd##.866dy.com':80
- 'localhost':1035
- 'do##.##qingzhihui.com':80
- 'www.si##168.com':80
- do##.zzha.net/setup_4503-666.exe
- jl####r.jieku.com/pptvjm/PPTV(pplive)_forjieku_539053.exe
- www.cs##men.com/kuplay_238_53680.exe
- 13######13.liulanwangye.com/798_abroad.exe
- cd##.866dy.com/down/play_2061_8358.exe
- www.si##168.com/
- do##.##qingzhihui.com/new/pczh_78_8358.exe
- DNS ASK do##.zzha.net
- DNS ASK jl####r.jieku.com
- DNS ASK www.cs##men.com
- DNS ASK 13######13.liulanwangye.com
- DNS ASK cd##.866dy.com
- DNS ASK www.si##168.com
- DNS ASK do##.##qingzhihui.com
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'Microsoft Internet Explorer'
- ClassName: '' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'