Техническая информация
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\VoidRay_1122[1].php
- '61.##7.69.236':80
- '58.##1.133.251':80
- '11#.#4.66.88':80
- 'lp#####ay.mai315.com':80
- 'lp#####ay.lingpao8.com':80
- 'lp#####ay.meimofang.com':80
- 'lp####ray.huo99.com':80
- 61.##7.69.236/VoidRay_1122.php?UI############################
- 58.##1.133.251/VoidRay_1122.php?UI############################
- 11#.#4.66.88/VoidRay_1122.php?UI############################
- lp#####ay.mai315.com/VoidRay_1122.php?UI############################
- lp#####ay.lingpao8.com/VoidRay_1122.php?UI############################
- lp#####ay.meimofang.com/VoidRay_1122.php?UI############################
- lp####ray.huo99.com/VoidRay_1122.php?UI############################
- DNS ASK lp####ray.huo99.com
- DNS ASK lp#####ay.mai315.com
- DNS ASK lp#####ay.lingpao8.com
- DNS ASK lp#####ay.meimofang.com