Техническая информация
- 'C:\Tools\MainPro.exe'
- 'C:\Tools\MainProX.exe'
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\rich.bat" "
- '<SYSTEM32>\wscript.exe' "%WINDIR%\rich.vbs"
- <SYSTEM32>\MainproCgf.dll
- C:\Tools\MainProX.exe
- C:\Tools\CfgX.G
- C:\Tools\MainPro.exe
- %WINDIR%\rich.vbs
- %WINDIR%\rich.bat
- C:\Users\%USERNAME%\AppData\Roaming\SogouExplorer\config.xml
- C:\Users\%USERNAME%\AppData\Roaming\SogouExplorer\MCPattern.db
- 'co#nt':80
- 'in#.#8qz.com':80
- in#.#8qz.com/soft/vpp.ah.ini
- in#.#8qz.com/58wangwei/anhui-000002.ah.ini
- DNS ASK co#nt
- DNS ASK ur#
- DNS ASK in#.#8qz.com
- '10.##5.255.255':26010
- ClassName: '' WindowName: 'AnnxePro'
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''