Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001] 'LibraryPath' = 'mswsock.dll'
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003] 'LibraryPath' = 'mswsock.dll'
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008] 'PackedCatalogItem' = ''
- <SYSTEM32>\services.exe
- %WINDIR%\Installer\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\n
- %WINDIR%\assembly\GAC\Desktop.ini
- %WINDIR%\Installer\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\@
- <LS_APPDATA>\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\@
- <LS_APPDATA>\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\n
- %WINDIR%\Installer\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\@
- %WINDIR%\Installer\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\n
- <LS_APPDATA>\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\@
- <LS_APPDATA>\{2ebe1c2e-2a38-cb36-436c-4d1cb8c2630c}\n
- '21#.#08.252.185':80
- 'pr####.fling.com':80
- 21#.#08.252.185/5699145-24B8EBEDAA47374020E664A2406FB684/counter.img?th###############################
- pr####.fling.com/geo/txt/city.php
- DNS ASK ��#�U@�
- DNS ASK ��#�(
- DNS ASK ��#���@
- DNS ASK ��#<~�
- DNS ASK ��#�'V�
- DNS ASK ��# �>(
- DNS ASK pr####.fling.com
- DNS ASK ��#�]
- DNS ASK ��#�#*
- '24.##7.135.203':16471
- '65.##.116.203':16471
- '98.##.231.203':16471
- '17#.#48.112.205':16471
- '13#.#30.183.204':16471
- '79.##6.102.199':16471
- '82.##.226.198':16471
- '74.##7.10.201':16471
- '72.##8.135.202':16471
- '10#.#5.27.202':16471
- '24.##1.82.206':16471
- '93.#.15.214':16471
- '84.##.111.213':16471
- '11#.#40.72.214':16471
- '17#.#9.154.215':16471
- '66.##8.113.215':16471
- '83.#.43.209':16471
- '66.#6.0.209':16471
- '67.##.76.212':16471
- '11#.#00.15.213':16471
- '24.##4.194.212':16471
- '12#.#4.72.187':16471
- '10#.#0.25.187':16471
- '12#.#7.244.187':16471
- '24.##4.77.189':16471
- '69.##3.12.188':16471
- '66.##8.201.183':16471
- '76.##7.122.183':16471
- '83.##5.186.184':16471
- '91.##.25.186':16471
- '50.##0.172.185':16471
- '67.##3.150.189':16471
- '65.##.84.195':16471
- '68.##.69.195':16471
- '18#.#54.198.195':16471
- '17#.#8.62.198':16471
- '10#.#62.134.196':16471
- '75.##1.245.192':16471
- '72.##5.12.192':16471
- '75.##5.115.193':16471
- '96.#.41.195':16471
- '89.##1.190.193':16471
- '62.##.50.216':16471
- '12#.#76.146.227':16471
- '61.##7.101.227':16471
- '21#.#15.11.229':16471
- '46.##9.13.232':16471
- '93.##5.135.230':16471
- '24.##.185.226':16471
- '84.##8.143.225':16471
- '20#.#02.192.226':16471
- '76.##4.76.227':16471
- '11#.#36.68.227':16471
- '88.##9.118.237':16471
- '71.##6.65.247':16471
- '16#.#9.57.246':16471
- '87.#8.4.248':16471
- '17#.#4.10.249':16471
- '98.##3.25.248':16471
- '10#.#89.206.241':16471
- '98.##1.174.239':16471
- '18#.#.131.243':16471
- '31.##1.65.245':16471
- '74.##2.76.244':16471
- '89.##5.149.220':16471
- '68.##2.15.220':16471
- '20#.#4.53.221':16471
- '99.##1.168.221':16471
- '18#.#5.88.221':16471
- '18#.#7.149.216':16471
- '17#.#68.117.216':16471
- '92.##7.247.216':16471
- '68.##.209.219':16471
- '21#.#18.48.219':16471
- '17#.#15.21.222':16471
- '24.##9.56.224':16471
- '22#.#20.27.224':16471
- '87.##0.121.224':16471
- '19#.#28.117.225':16471
- '98.##1.147.224':16471
- '18#.#37.144.222':16471
- '86.##.126.222':16471
- '50.##.175.222':16471
- '17#.#3.138.223':16471
- '98.##0.6.223':16471