Техническая информация
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://yy.com/97051076
- %TEMP%\~DF4942725B09D65672.TMP
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\YIF7DGLM\97051076[1]
- <LS_APPDATA>\Microsoft\Internet Explorer\imagestore\g1bfg6d\imagestore.dat
- <LS_APPDATA>\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{CB1CB569-50C1-11E4-B1F9-CF553F90C1F0}.dat
- %TEMP%\~DF54725AAEDF23EE5C.TMP
- <LS_APPDATA>\Microsoft\Internet Explorer\Recovery\High\Active\{CB1CB56B-50C1-11E4-B1F9-CF553F90C1F0}.dat
- '20#.#6.232.182':443
- 'yy.com':80
- yy.com/97051076
- DNS ASK ie#####t.microsoft.com
- DNS ASK ie#####e.microsoft.com
- DNS ASK ur#.##crosoft.com
- DNS ASK go.###rosoft.com
- DNS ASK yy.com
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''