Техническая информация
- %PROGRAM_FILES%\FeixinMedia\ipseccmd.exe -p Block3 -r BlockTWO -f 122.70.*.*+0 -n BLOCK -x -p Block4 -r BlockTHREE -f 124.238.*.*+0 -n BLOCK -x -p Block1 -r BlockTCP -f 119.147.*.*+0 -n BLOCK -x -p Block2 -r BlockNEW -f 119.188.*.*+0 -n BLOCK -x
- <Текущая директория>\mzone-5955.exe
- <SYSTEM32>\sc.exe start PolicyAgent
- %PROGRAM_FILES%\FeixinMedia\ipseccmd.exe
- %TEMP%\nsf2.tmp\nsExec.dll
- %TEMP%\nsg4.tmp\InstallOptions.dll
- %TEMP%\nsf2.tmp\nsisplugin.dll
- %TEMP%\nsf2.tmp\ns5.tmp
- %TEMP%\nsf2.tmp\ns8.tmp
- %TEMP%\nsf2.tmp\ns9.tmp
- %TEMP%\nsf2.tmp\ns6.tmp
- %TEMP%\nsf2.tmp\ns7.tmp
- %TEMP%\nsg4.tmp\modern-wizard.bmp
- <Текущая директория>\mzone-5955.exe
- %TEMP%\nsf2.tmp\System.dll
- %PROGRAM_FILES%\FeixinMedia\menu.xml
- %PROGRAM_FILES%\FeixinMedia\s0001.xml
- %PROGRAM_FILES%\FeixinMedia\temp0223234000780.ini
- %TEMP%\nsf2.tmp\Internet.dll
- %TEMP%\nsg4.tmp\ioSpecial.ini
- %PROGRAM_FILES%\FeixinMedia\un0223234000780.exe
- %TEMP%\nsf2.tmp\nsRandom.dll
- %TEMP%\nsf2.tmp\ns7.tmp
- %TEMP%\nsf2.tmp\ns8.tmp
- %TEMP%\nsf2.tmp\ns5.tmp
- %TEMP%\nsf2.tmp\ns6.tmp
- 'tj.#233.com':80
- tj.#233.com/svr.asp?c=########################################
- DNS ASK tj.#233.com
- ClassName: 'Shell_TrayWnd' WindowName: ''