Technical Information
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://e.##168.com/?dn########
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://hi.##idu.com/dnf%C5%D8%CF%F8/blog/item/ad5418abe1950ef6faed5065.html
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://it##.taobao.com/auction/item_detail.htm?it####################
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\e.ys168[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\ad5418abe1950ef6faed5065[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\item_detail[1].htm
- 'it##.taobao.com':80
- '12#.#25.114.144':80
- 'e.##168.com':80
- 'localhost':1036
- 'localhost':1037
- 'localhost':1038
- e.##168.com/?dn########
- 12#.#25.114.144/dnf%C5%D8%CF%F8/blog/item/ad5418abe1950ef6faed5065.html
- it##.taobao.com/auction/item_detail.htm?it####################
- DNS ASK e.##168.com
- DNS ASK hi.##idu.com
- DNS ASK it##.taobao.com
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'