Техническая информация
- %PROGRAM_FILES%\YoudaoDict_zhusha_jixian_0004.exe /S
- %PROGRAM_FILES%\YoudaoDict_zhusha_jixian_0004.exe (загружен из сети Интернет)
- %PROGRAM_FILES%\YoudaoDict_zhusha_jixian_0004.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\YoudaoDict_zhusha_jixian_0004[1].exe
- %TEMP%\nso2.tmp\inetc.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\YoudaoDict_zhusha_jixian_0004[1].exe
- %TEMP%\nso2.tmp\inetc.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\YoudaoDict_zhusha_jixian_0004[1].exe
- 'co####.youdao.com':80
- co####.youdao.com/cidian/YoudaoDict_zhusha_jixian_0004.exe
- DNS ASK co####.youdao.com
- ClassName: 'Shell_TrayWnd' WindowName: ''