Техническая информация
- C:\downloads\setup_kubao.exe /VERYSILENT /DIR="C:\downloads\kubao"
- C:\downloads\setup_kubao.exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\kubao[2].exe
- C:\downloads\setup_kubao.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\kubao[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\getExeUrl[1].aspx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\kubaoxc[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\kubao[2].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\kubao[1].exe
- 'www.ku##o.com':80
- 'lo###.kubao.com':80
- 'localhost':1037
- www.ku##o.com/exe/kubao.exe
- www.ku##o.com/kubaoxc.htm
- lo###.kubao.com/getExeUrl.aspx
- DNS ASK www.ku##o.com
- DNS ASK lo###.kubao.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''