Technical Information
- '<SYSTEM32>\regini.exe' c:\regset.ini
- '<SYSTEM32>\cmd.exe' /c <SYSTEM32>\setie.bat
- <Current directory>\winipsec.dll
- C:\regset.ini
- <Current directory>\polstore.dll
- <SYSTEM32>\setie.bat
- <Current directory>\ipseccmd.dll
- 'www.52###jie.com':443
- 'www.ls##g.com':80
- 'www.ls##g.com':443
- 'www.52###jie.com':80
- 'www.94###jie.com':80
- 'www.94###jie.com':443
- 'qq######iake.blog.163.com':80
- http://www.52###jie.com/
- http://www.ls##g.com/
- http://www.94###jie.com/
- http://qq######iake.blog.163.com/blog/static/26430000220167882842196/#
- DNS ASK www.52###jie.com
- DNS ASK www.ls##g.com
- DNS ASK www.94###jie.com
- DNS ASK qq######iake.blog.163.com
- ClassName: 'Shell_TrayWnd' WindowName: ''