Техническая информация
- NtQuerySystemInformation, драйвер-обработчик: hbh_sys.sys
- <DRIVERS>\hbh_sys.sys
- %TEMP%\_homepage.ini
- %TEMP%\process_name.dat
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- 'un###.pk2012.info':9000
- 'un###.pcdogs.info':9000
- 'un###.yaowan365.com':9000
- '12#.#25.114.144':80
- 'ga##.#65doc.info':9000
- '11#.#8.65.20':9000
- DNS ASK un###.pk2012.info
- DNS ASK un###.pcdogs.info
- DNS ASK un###.yaowan365.com
- DNS ASK www.ba##u.com
- DNS ASK ga##.#65doc.info
- '25#.#55.255.255':4012
- ClassName: '360se_Frame' WindowName: '(null)'
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: '#32770' WindowName: '(null)'
- ClassName: 'SE_SogouExplorerFrame' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'SHELLDLL_DefView' WindowName: '(null)'
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'progman' WindowName: '(null)'
- ClassName: 'SysListView32' WindowName: '(null)'