Техническая информация
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ta#.##2222qb.com/bingxin.html
- %APPDATA%\E_UIEngine\90afea1eeb37be7a93471c36152ab43a\90afea1eeb37be7a93471c36152ab43a.jpg
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- 'localhost':1041
- 'ta#.##2222qb.com':80
- 'localhost':1037
- '12#.#25.114.144':80
- ta#.##2222qb.com/bingxin.html
- 12#.#25.114.144/s?wd#######################################
- 12#.#25.114.144/s?wd##############################################
- DNS ASK ta#.##2222qb.com
- DNS ASK www.ba##u.com
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: 'TXPlatform.exe'
- ClassName: 'MS_AutodialMonitor' WindowName: ''