Technical Information
- '%TEMP%\nso2.tmp\UCBrowser_V3.1.1644.29_4443_(Build14102814)_downloader.exe'
- '%TEMP%\nso2.tmp\letvsetup.exe'
- '%TEMP%\nso2.tmp\QQBrowser_Setup_Hk_78653.exe'
- '%TEMP%\nso2.tmp\ins1256858.exe'
- '%TEMP%\nso2.tmp\OfficeAssist.0334.80.1078.exe'
- '%TEMP%\nso2.tmp\yx_dts.exe'
- '%TEMP%\nso2.tmp\2345Explorer_329242_silence.exe'
- '%TEMP%\nso2.tmp\setup_001.exe' /DesKTop
- '%TEMP%\nso2.tmp\WanDouJia_runk4_kb.exe' -hide
- '%TEMP%\nso2.tmp\SoHuVA_4.3.0.1-c204900003-ng-nti-s-x.exe'
- '%TEMP%\nso2.tmp\IQIYIsetup_l_spl004@kb010.exe'
- '%TEMP%\nso2.tmp\mini_installer_10000036.exe'
- '%TEMP%\nso2.tmp\BaiduPlayerNetSetup_472.exe'
- '%TEMP%\nso2.tmp\setup_3386.exe'
- '%TEMP%\nso2.tmp\F1023_s_30974.exe'
- '%TEMP%\nso2.tmp\G1031_s_71115.exe'
- '%TEMP%\nso2.tmp\9377mycs_Y_mgaz2_01.exe'
- '%TEMP%\nso2.tmp\girlshow_22350018888.exe'
- '%TEMP%\nso2.tmp\MM-liao8398.exe'
- '%TEMP%\nso2.tmp\girlshow_22350018888.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\SoHuVA_4.3.0.1-c204900003-ng-nti-s-x.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\IQIYIsetup_l_spl004@kb010.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\MM-liao8398.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\setup_001.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\2345Explorer_329242_silence.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\mini_installer_10000036.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\WanDouJia_runk4_kb.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\OfficeAssist.0334.80.1078.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\G1031_s_71115.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\ins1256858.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\BaiduPlayerNetSetup_472.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\9377mycs_Y_mgaz2_01.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\yx_dts.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\QQBrowser_Setup_Hk_78653.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\setup_3386.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\letvsetup.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\UCBrowser_V3.1.1644.29_4443_(Build14102814)_downloader.exe' (downloaded from the Internet)
- '%TEMP%\nso2.tmp\F1023_s_30974.exe' (downloaded from the Internet)
- %TEMP%\nso2.tmp\UCBrowser_V3.1.1644.29_4443_(Build14102814)_downloader.exe
- %TEMP%\nso2.tmp\letvsetup.exe
- %TEMP%\nso2.tmp\QQBrowser_Setup_Hk_78653.exe
- %TEMP%\nso2.tmp\ins1256858.exe
- %TEMP%\nso2.tmp\OfficeAssist.0334.80.1078.exe
- %TEMP%\nso2.tmp\yx_dts.exe
- %TEMP%\nso2.tmp\2345Explorer_329242_silence.exe
- %TEMP%\nso2.tmp\setup_001.exe
- %TEMP%\nso2.tmp\WanDouJia_runk4_kb.exe
- %TEMP%\nso2.tmp\SoHuVA_4.3.0.1-c204900003-ng-nti-s-x.exe
- %TEMP%\nso2.tmp\IQIYIsetup_l_spl004@kb010.exe
- %TEMP%\nso2.tmp\mini_installer_10000036.exe
- %TEMP%\nso2.tmp\BaiduPlayerNetSetup_472.exe
- %HOMEPATH%\Start Menu\Programs\4415\uninst.lnk
- %TEMP%\nso2.tmp\Inetc.dll
- %TEMP%\nso2.tmp\MM-liao8398.exe
- %TEMP%\nso2.tmp\1.ico
- %TEMP%\nso2.tmp\nsProcess.dll
- %PROGRAM_FILES%\4415\Uninstall.exe
- %TEMP%\nso2.tmp\F1023_s_30974.exe
- %TEMP%\nso2.tmp\G1031_s_71115.exe
- %TEMP%\nso2.tmp\9377mycs_Y_mgaz2_01.exe
- %TEMP%\nso2.tmp\girlshow_22350018888.exe
- %TEMP%\nso2.tmp\setup_3386.exe
- %TEMP%\nso2.tmp\Base64.dll
- 'dl###1.qq.com':80
- 'so##.##baoranshiye.com':80
- 'do##2.uc.cn':80
- 'le##.#own.letv.com':80
- 's.###soo.com':80
- 'dl.###doujia.com':80
- 'dl.###tic.iqiyi.com':80
- 'do####ad.2345.cn':80
- 'do##.yinyue.fm':80
- '12#.#25.114.144':80
- 'sh##.#an1234.com':80
- 'do####ad.re58.cn':80
- 'wd##.#ache.wps.cn':80
- 'd.###6699.com':80
- 'xi###i.9377.com':80
- 'g.###en320.com':80
- dl###1.qq.com/invc/tt/QQBrowser_Setup_Hk_78653.exe
- so##.##baoranshiye.com/SoHuVA_4.3.0.1-c204900003-ng-nti-s-x.rar
- do##2.uc.cn/pcbrowser/down.php?id#############################
- le##.#own.letv.com/pcweb/version/7.1.2.327/client_lianmeng7-09/letvsetup.exe
- dl.###tic.iqiyi.com/hz/IQIYIsetup_l_spl004@kb010.exe
- s.###soo.com/click/66947
- dl.###doujia.com/files/inst/WanDouJia_runk4_kb.exe
- 12#.#25.114.144/client7/rl/34750439478/mini_installer_10000036.exe
- do####ad.2345.cn/silence/2345Explorer_329242_silence.exe
- d.###6699.com/yx/dts/sqcs/916631/yx_dts.exe
- do##.yinyue.fm/open/setup_3386.exe
- 12#.#25.114.144/index/fulldownload/30974
- sh##.#an1234.com/mmliao/MM-liao8398.exe
- do####ad.re58.cn/c/girlshow_22350018888.exe
- 12#.#25.114.144/go/full/1/71115
- g.###en320.com/d/ins1256858.exe
- wd##.#ache.wps.cn/wps/download/OfficeAssist.0334.80.1078.exe
- xi###i.9377.com/20140928/9377mycs_Y_mgaz2_01.exe
- 12#.#25.114.144/BaiduPlayerContent/BaiduPlayerNetSetup_472.exe
- DNS ASK dl###1.qq.com
- DNS ASK so##.##baoranshiye.com
- DNS ASK do##2.uc.cn
- DNS ASK le##.#own.letv.com
- DNS ASK dl.###tic.iqiyi.com
- DNS ASK s.###soo.com
- DNS ASK dl.###doujia.com
- DNS ASK dl###.baidu.com
- DNS ASK do####ad.2345.cn
- DNS ASK d.###6699.com
- DNS ASK do##.yinyue.fm
- DNS ASK sh###.baidu.com
- DNS ASK sh##.#an1234.com
- DNS ASK do####ad.re58.cn
- DNS ASK w.#.#aidu.com
- DNS ASK g.###en320.com
- DNS ASK wd##.#ache.wps.cn
- DNS ASK xi###i.9377.com
- DNS ASK dl.###p.baidu.com
- ClassName: 'Shell_TrayWnd' WindowName: ''