Техническая информация
- '<SYSTEM32>\amtfs_30173.exe'
- '<SYSTEM32>\setup_7aea_p3c0.exe'
- 'C:\smss.exe'
- '<SYSTEM32>\amtfs_30173.exe' (загружен из сети Интернет)
- '<SYSTEM32>\setup_7aea_p3c0.exe' (загружен из сети Интернет)
- '<SYSTEM32>\attrib.exe' +r +h +s <Текущая директория>\jincheng.dll
- <SYSTEM32>\setup_7aea_p3c0.exe
- <SYSTEM32>\amtfs_30173.exe
- <Текущая директория>\jincheng.dll
- C:\smss.exe
- C:\smss.exe
- <Текущая директория>\jincheng.dll
- 'localhost':1042
- '12#.#25.114.144':80
- 'st####.adshendun.com':80
- 12#.#25.114.144/index/minidownload/30173
- st####.adshendun.com/client/download/silent/setup_7aea_p3c0.exe
- DNS ASK td#.#njnh.com
- DNS ASK do####ad.uusee.com
- DNS ASK do####ad.wallba.com
- DNS ASK tj.##huisuo.com
- DNS ASK td#.#dfq.net
- DNS ASK cp####p.centenr.net
- DNS ASK sh###.baidu.com
- DNS ASK st####.adshendun.com
- DNS ASK we####.baidu.com
- DNS ASK td#.#ahyy.com
- DNS ASK lc#.#ny8.net
- ClassName: '(null)' WindowName: '__cd75efb816b2cc__.exe'
- ClassName: '(null)' WindowName: 'sro_client.exe'
- ClassName: '(null)' WindowName: 'ZZ__cd75efb816b2cc__.exe'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'bc_loader.exe'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'el_cli.ex'
- ClassName: '(null)' WindowName: 'kb_cli.exe'
- ClassName: '(null)' WindowName: 'kb_cli.ex'