Техническая информация
- C:\Install.exe
- %TEMP%\Install - Pink.exe
- C:\czanzhuang.exe
- %TEMP%\Install - Pink.exe (загружен из сети Интернет)
- C:\czanzhuang.exe (загружен из сети Интернет)
- %WINDIR%\explorer.exe
- C:\Install.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\Pink[1].exe
- %TEMP%\Install - Pink.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ddgZdy[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\tongji[1].php
- C:\czanzhuang.exe
- 'do##.feng15.com':80
- 'localhost':1042
- 'zx#.#olor8.tk':80
- 'localhost':1037
- 'ww###.n6y8.com':80
- '23.##.203.69????30':80
- do##.feng15.com/http/czanzhuang.exe
- zx#.#olor8.tk/admin/Pink.exe
- ww###.n6y8.com/ddguo/ddgZdy.html?ui##################
- 23.##.203.69????30/tongji.php?ve###################################################
- DNS ASK do##.feng15.com
- DNS ASK zx#.#olor8.tk
- DNS ASK ww###.n6y8.com
- DNS ASK 23.##.#03.69јє30 . .
- ClassName: 'SystemTray_Main' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'CSCHiddenWindow' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'BaseBar' WindowName: 'ChanApp'
- ClassName: 'Proxy Desktop' WindowName: ''