Техническая информация
- '%WINDIR%\empty.exe' 2836
- '%TEMP%\ie.exe'
- <SYSTEM32>\winlogon.exe
- %TEMP%\E_N4\dp1.fne
- %TEMP%\E_N4\RegEx.fnr
- %TEMP%\E_N4\spec.fne
- %TEMP%\E_N4\EDataStructure.fne
- %WINDIR%\empty.exe
- %TEMP%\ie.exe
- %TEMP%\E_N4\eAPI.fne
- %TEMP%\E_N4\HtmlView.fne
- %TEMP%\E_N4\shell.fne
- %TEMP%\E_N4\krnln.fnr
- %TEMP%\E_N4\internet.fne
- %TEMP%\E_N4\WebBrowser2.fne
- %TEMP%\E_N4\EThread.fne
- %TEMP%\E_N4\eCompress.fne
- 'www.x5##.com':80
- 'zw#.#5xl.com':80
- '98.##6.83.66':443
- 'localhost':1036
- '98.##6.83.66':80
- zw#.#5xl.com/tyf/twice.txt
- www.x5##.com/tyf/twice.txt
- www.x5##.com/tyf/jrtj.htm
- DNS ASK zw#.#5xl.com
- DNS ASK www.x5##.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''