Техническая информация
- 'C:\server.exe'
- '%WINDIR%\WinSxS\conime.exe'
- 'C:\MainPro.exe'
- '%WINDIR%\Tmp\svchost.exe'
- '%WINDIR%\Tmp\MainPro.exe'
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\Tmp\1.bat" /start"
- '<SYSTEM32>\wscript.exe' "%WINDIR%\Tmp\1.vbs"
- C:\MainPro.exe
- %CommonProgramFiles%\System\hkEx.dll
- %WINDIR%\WinSxS\conime.exe
- C:\server.exe
- %WINDIR%\Tmp\1.bat
- %WINDIR%\Tmp\MainPro.exe
- %WINDIR%\Tmp\svchost.exe
- %WINDIR%\Tmp\1.vbs
- C:\server.exe
- 'localhost':1040
- 'co###.cnk.com.cn':80
- '22#.#87.222.17':809
- DNS ASK ur#.#nk.com.cn
- DNS ASK co###.cnk.com.cn
- '10.##5.255.255':26010
- ClassName: 'SysListView32' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'AnnexPro'
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'ShellDll_DefView' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Progman' WindowName: '(null)'