Technical Information
- <SYSTEM32>\zydata\zip.dll
- <SYSTEM32>\zydata\Proxy.dll
- <SYSTEM32>\zydata\notewnd.dll
- <SYSTEM32>\zydata\update.exe
- <SYSTEM32>\Proxy.dll
- <SYSTEM32>\face.dll
- <SYSTEM32>\notewnd.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\5[1].xml
- %TEMP%\nss2.tmp\inetc.dll
- %TEMP%\nss2.tmp\System.dll
- %TEMP%\nss2.tmp\xconfigx.ini
- <SYSTEM32>\zydata\face.dll
- <SYSTEM32>\zydata\zydata.db
- %TEMP%\jilu.exe
- %TEMP%\nss2.tmp\xconfigx.ini
- %TEMP%\nss2.tmp\System.dll
- %TEMP%\nss2.tmp\inetc.dll
- 'www.kk##56.com':80
- www.kk##56.com/5.xml
- DNS ASK www.pp##34.net
- DNS ASK www.kk##56.com
- ClassName: '#32770' WindowName: 'KsCeter 20.2'
- ClassName: '#32770' WindowName: 'KsCeter 20.3'
- ClassName: '#32770' WindowName: 'KsCeter 20.0'
- ClassName: '#32770' WindowName: 'KsCeter 20.1'
- ClassName: '#32770' WindowName: 'KsCeter 20.4'
- ClassName: '#32770' WindowName: 'KsCeter 20.7'
- ClassName: '#32770' WindowName: 'KsCeter 20.8'
- ClassName: '#32770' WindowName: 'KsCeter 20.5'
- ClassName: '#32770' WindowName: 'KsCeter 20.6'
- ClassName: '#32770' WindowName: 'KsCeter 19.3'
- ClassName: '#32770' WindowName: 'KsCeter 19.4'
- ClassName: '#32770' WindowName: 'KsCeter 19.1'
- ClassName: '#32770' WindowName: 'KsCeter 19.2'
- ClassName: '#32770' WindowName: 'KsCeter 19.5'
- ClassName: '#32770' WindowName: 'KsCeter 19.8'
- ClassName: '#32770' WindowName: 'KsCeter 19.9'
- ClassName: '#32770' WindowName: 'KsCeter 19.6'
- ClassName: '#32770' WindowName: 'KsCeter 19.7'
- ClassName: '#32770' WindowName: 'KsCeter 22.0'
- ClassName: '#32770' WindowName: 'KsCeter 22.1'
- ClassName: '#32770' WindowName: 'KsCeter 21.8'
- ClassName: '#32770' WindowName: 'KsCeter 21.9'
- ClassName: '#32770' WindowName: 'KsCeter 22.2'
- ClassName: '#32770' WindowName: 'KsCeter 22.5'
- ClassName: '#32770' WindowName: 'KsCeter 22.6'
- ClassName: '#32770' WindowName: 'KsCeter 22.3'
- ClassName: '#32770' WindowName: 'KsCeter 22.4'
- ClassName: '#32770' WindowName: 'KsCeter 21.1'
- ClassName: '#32770' WindowName: 'KsCeter 21.2'
- ClassName: '#32770' WindowName: 'KsCeter 20.9'
- ClassName: '#32770' WindowName: 'KsCeter 21.0'
- ClassName: '#32770' WindowName: 'KsCeter 21.3'
- ClassName: '#32770' WindowName: 'KsCeter 21.6'
- ClassName: '#32770' WindowName: 'KsCeter 21.7'
- ClassName: '#32770' WindowName: 'KsCeter 21.4'
- ClassName: '#32770' WindowName: 'KsCeter 21.5'
- ClassName: '#32770' WindowName: 'KsCeter 16.6'
- ClassName: '#32770' WindowName: 'KsCeter 16.7'
- ClassName: '#32770' WindowName: 'KsCeter 16.4'
- ClassName: '#32770' WindowName: 'KsCeter 16.5'
- ClassName: '#32770' WindowName: 'KsCeter 16.8'
- ClassName: '#32770' WindowName: 'KsCeter 17.1'
- ClassName: '#32770' WindowName: 'KsCeter 17.2'
- ClassName: '#32770' WindowName: 'KsCeter 16.9'
- ClassName: '#32770' WindowName: 'KsCeter 17.0'
- ClassName: '#32770' WindowName: 'KsCeter 15.7'
- ClassName: '#32770' WindowName: 'KsCeter 15.8'
- ClassName: '#32770' WindowName: 'KsCeter 15.5'
- ClassName: '#32770' WindowName: 'KsCeter 15.6'
- ClassName: '#32770' WindowName: 'KsCeter 15.9'
- ClassName: '#32770' WindowName: 'KsCeter 16.2'
- ClassName: '#32770' WindowName: 'KsCeter 16.3'
- ClassName: '#32770' WindowName: 'KsCeter 16.0'
- ClassName: '#32770' WindowName: 'KsCeter 16.1'
- ClassName: '#32770' WindowName: 'KsCeter 18.4'
- ClassName: '#32770' WindowName: 'KsCeter 18.5'
- ClassName: '#32770' WindowName: 'KsCeter 18.2'
- ClassName: '#32770' WindowName: 'KsCeter 18.3'
- ClassName: '#32770' WindowName: 'KsCeter 18.6'
- ClassName: '#32770' WindowName: 'KsCeter 18.9'
- ClassName: '#32770' WindowName: 'KsCeter 19.0'
- ClassName: '#32770' WindowName: 'KsCeter 18.7'
- ClassName: '#32770' WindowName: 'KsCeter 18.8'
- ClassName: '#32770' WindowName: 'KsCeter 17.5'
- ClassName: '#32770' WindowName: 'KsCeter 17.6'
- ClassName: '#32770' WindowName: 'KsCeter 17.3'
- ClassName: '#32770' WindowName: 'KsCeter 17.4'
- ClassName: '#32770' WindowName: 'KsCeter 17.7'
- ClassName: '#32770' WindowName: 'KsCeter 18.0'
- ClassName: '#32770' WindowName: 'KsCeter 18.1'
- ClassName: '#32770' WindowName: 'KsCeter 17.8'
- ClassName: '#32770' WindowName: 'KsCeter 17.9'
- ClassName: '#32770' WindowName: 'KsCeter 22.7'
- ClassName: '#32770' WindowName: 'KsCeter 27.5'
- ClassName: '#32770' WindowName: 'KsCeter 27.6'
- ClassName: '#32770' WindowName: 'KsCeter 27.3'
- ClassName: '#32770' WindowName: 'KsCeter 27.4'
- ClassName: '#32770' WindowName: 'KsCeter 27.7'
- ClassName: '#32770' WindowName: 'KsCeter 28.0'
- ClassName: '#32770' WindowName: 'KsCeter 28.1'
- ClassName: '#32770' WindowName: 'KsCeter 27.8'
- ClassName: '#32770' WindowName: 'KsCeter 27.9'
- ClassName: '#32770' WindowName: 'KsCeter 26.6'
- ClassName: '#32770' WindowName: 'KsCeter 26.7'
- ClassName: '#32770' WindowName: 'KsCeter 26.4'
- ClassName: '#32770' WindowName: 'KsCeter 26.5'
- ClassName: '#32770' WindowName: 'KsCeter 26.8'
- ClassName: '#32770' WindowName: 'KsCeter 27.1'
- ClassName: '#32770' WindowName: 'KsCeter 27.2'
- ClassName: '#32770' WindowName: 'KsCeter 26.9'
- ClassName: '#32770' WindowName: 'KsCeter 27.0'
- ClassName: '#32770' WindowName: 'KsCeter 29.3'
- ClassName: '#32770' WindowName: 'KsCeter 29.4'
- ClassName: '#32770' WindowName: 'KsCeter 29.1'
- ClassName: '#32770' WindowName: 'KsCeter 29.2'
- ClassName: '#32770' WindowName: 'KsCeter 29.5'
- ClassName: '#32770' WindowName: 'KsCeter 29.8'
- ClassName: '#32770' WindowName: 'KsCeter 29.9'
- ClassName: '#32770' WindowName: 'KsCeter 29.6'
- ClassName: '#32770' WindowName: 'KsCeter 29.7'
- ClassName: '#32770' WindowName: 'KsCeter 28.4'
- ClassName: '#32770' WindowName: 'KsCeter 28.5'
- ClassName: '#32770' WindowName: 'KsCeter 28.2'
- ClassName: '#32770' WindowName: 'KsCeter 28.3'
- ClassName: '#32770' WindowName: 'KsCeter 28.6'
- ClassName: '#32770' WindowName: 'KsCeter 28.9'
- ClassName: '#32770' WindowName: 'KsCeter 29.0'
- ClassName: '#32770' WindowName: 'KsCeter 28.7'
- ClassName: '#32770' WindowName: 'KsCeter 28.8'
- ClassName: '#32770' WindowName: 'KsCeter 23.9'
- ClassName: '#32770' WindowName: 'KsCeter 24.0'
- ClassName: '#32770' WindowName: 'KsCeter 23.7'
- ClassName: '#32770' WindowName: 'KsCeter 23.8'
- ClassName: '#32770' WindowName: 'KsCeter 24.1'
- ClassName: '#32770' WindowName: 'KsCeter 24.4'
- ClassName: '#32770' WindowName: 'KsCeter 24.5'
- ClassName: '#32770' WindowName: 'KsCeter 24.2'
- ClassName: '#32770' WindowName: 'KsCeter 24.3'
- ClassName: '#32770' WindowName: 'KsCeter 23.0'
- ClassName: '#32770' WindowName: 'KsCeter 23.1'
- ClassName: '#32770' WindowName: 'KsCeter 22.8'
- ClassName: '#32770' WindowName: 'KsCeter 22.9'
- ClassName: '#32770' WindowName: 'KsCeter 23.2'
- ClassName: '#32770' WindowName: 'KsCeter 23.5'
- ClassName: '#32770' WindowName: 'KsCeter 23.6'
- ClassName: '#32770' WindowName: 'KsCeter 23.3'
- ClassName: '#32770' WindowName: 'KsCeter 23.4'
- ClassName: '#32770' WindowName: 'KsCeter 25.7'
- ClassName: '#32770' WindowName: 'KsCeter 25.8'
- ClassName: '#32770' WindowName: 'KsCeter 25.5'
- ClassName: '#32770' WindowName: 'KsCeter 25.6'
- ClassName: '#32770' WindowName: 'KsCeter 25.9'
- ClassName: '#32770' WindowName: 'KsCeter 26.2'
- ClassName: '#32770' WindowName: 'KsCeter 26.3'
- ClassName: '#32770' WindowName: 'KsCeter 26.0'
- ClassName: '#32770' WindowName: 'KsCeter 26.1'
- ClassName: '#32770' WindowName: 'KsCeter 24.8'
- ClassName: '#32770' WindowName: 'KsCeter 24.9'
- ClassName: '#32770' WindowName: 'KsCeter 24.6'
- ClassName: '#32770' WindowName: 'KsCeter 24.7'
- ClassName: '#32770' WindowName: 'KsCeter 25.0'
- ClassName: '#32770' WindowName: 'KsCeter 25.3'
- ClassName: '#32770' WindowName: 'KsCeter 25.4'
- ClassName: '#32770' WindowName: 'KsCeter 25.1'
- ClassName: '#32770' WindowName: 'KsCeter 25.2'
- ClassName: '#32770' WindowName: 'KsCeter 15.4'
- ClassName: '#32770' WindowName: 'KsCeter 5.6'
- ClassName: '#32770' WindowName: 'KsCeter 5.7'
- ClassName: '#32770' WindowName: 'KsCeter 5.4'
- ClassName: '#32770' WindowName: 'KsCeter 5.5'
- ClassName: '#32770' WindowName: 'KsCeter 5.8'
- ClassName: '#32770' WindowName: 'KsCeter 6.1'
- ClassName: '#32770' WindowName: 'KsCeter 6.2'
- ClassName: '#32770' WindowName: 'KsCeter 5.9'
- ClassName: '#32770' WindowName: 'KsCeter 6.0'
- ClassName: '#32770' WindowName: 'KsCeter 4.7'
- ClassName: '#32770' WindowName: 'KsCeter 4.8'
- ClassName: '#32770' WindowName: 'KsCeter 4.5'
- ClassName: '#32770' WindowName: 'KsCeter 4.6'
- ClassName: '#32770' WindowName: 'KsCeter 4.9'
- ClassName: '#32770' WindowName: 'KsCeter 5.2'
- ClassName: '#32770' WindowName: 'KsCeter 5.3'
- ClassName: '#32770' WindowName: 'KsCeter 5.0'
- ClassName: '#32770' WindowName: 'KsCeter 5.1'
- ClassName: '#32770' WindowName: 'KsCeter 7.4'
- ClassName: '#32770' WindowName: 'KsCeter 7.5'
- ClassName: '#32770' WindowName: 'KsCeter 7.2'
- ClassName: '#32770' WindowName: 'KsCeter 7.3'
- ClassName: '#32770' WindowName: 'KsCeter 7.6'
- ClassName: '#32770' WindowName: 'KsCeter 7.9'
- ClassName: '#32770' WindowName: 'KsCeter 8.0'
- ClassName: '#32770' WindowName: 'KsCeter 7.7'
- ClassName: '#32770' WindowName: 'KsCeter 7.8'
- ClassName: '#32770' WindowName: 'KsCeter 6.5'
- ClassName: '#32770' WindowName: 'KsCeter 6.6'
- ClassName: '#32770' WindowName: 'KsCeter 6.3'
- ClassName: '#32770' WindowName: 'KsCeter 6.4'
- ClassName: '#32770' WindowName: 'KsCeter 6.7'
- ClassName: '#32770' WindowName: 'KsCeter 7.0'
- ClassName: '#32770' WindowName: 'KsCeter 7.1'
- ClassName: '#32770' WindowName: 'KsCeter 6.8'
- ClassName: '#32770' WindowName: 'KsCeter 6.9'
- ClassName: '#32770' WindowName: 'KsCeter 2.0'
- ClassName: '#32770' WindowName: 'KsCeter 2.1'
- ClassName: '#32770' WindowName: 'KsCeter 1.8'
- ClassName: '#32770' WindowName: 'KsCeter 1.9'
- ClassName: '#32770' WindowName: 'KsCeter 2.2'
- ClassName: '#32770' WindowName: 'KsCeter 2.5'
- ClassName: '#32770' WindowName: 'KsCeter 2.6'
- ClassName: '#32770' WindowName: 'KsCeter 2.3'
- ClassName: '#32770' WindowName: 'KsCeter 2.4'
- ClassName: '#32770' WindowName: 'KsCeter 1.1'
- ClassName: '#32770' WindowName: 'KsCeter 1.2'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '#32770' WindowName: 'KsCeter 1.0'
- ClassName: '#32770' WindowName: 'KsCeter 1.3'
- ClassName: '#32770' WindowName: 'KsCeter 1.6'
- ClassName: '#32770' WindowName: 'KsCeter 1.7'
- ClassName: '#32770' WindowName: 'KsCeter 1.4'
- ClassName: '#32770' WindowName: 'KsCeter 1.5'
- ClassName: '#32770' WindowName: 'KsCeter 3.8'
- ClassName: '#32770' WindowName: 'KsCeter 3.9'
- ClassName: '#32770' WindowName: 'KsCeter 3.6'
- ClassName: '#32770' WindowName: 'KsCeter 3.7'
- ClassName: '#32770' WindowName: 'KsCeter 4.0'
- ClassName: '#32770' WindowName: 'KsCeter 4.3'
- ClassName: '#32770' WindowName: 'KsCeter 4.4'
- ClassName: '#32770' WindowName: 'KsCeter 4.1'
- ClassName: '#32770' WindowName: 'KsCeter 4.2'
- ClassName: '#32770' WindowName: 'KsCeter 2.9'
- ClassName: '#32770' WindowName: 'KsCeter 3.0'
- ClassName: '#32770' WindowName: 'KsCeter 2.7'
- ClassName: '#32770' WindowName: 'KsCeter 2.8'
- ClassName: '#32770' WindowName: 'KsCeter 3.1'
- ClassName: '#32770' WindowName: 'KsCeter 3.4'
- ClassName: '#32770' WindowName: 'KsCeter 3.5'
- ClassName: '#32770' WindowName: 'KsCeter 3.2'
- ClassName: '#32770' WindowName: 'KsCeter 3.3'
- ClassName: '#32770' WindowName: 'KsCeter 8.1'
- ClassName: '#32770' WindowName: 'KsCeter 12.9'
- ClassName: '#32770' WindowName: 'KsCeter 13.0'
- ClassName: '#32770' WindowName: 'KsCeter 12.7'
- ClassName: '#32770' WindowName: 'KsCeter 12.8'
- ClassName: '#32770' WindowName: 'KsCeter 13.1'
- ClassName: '#32770' WindowName: 'KsCeter 13.4'
- ClassName: '#32770' WindowName: 'KsCeter 13.5'
- ClassName: '#32770' WindowName: 'KsCeter 13.2'
- ClassName: '#32770' WindowName: 'KsCeter 13.3'
- ClassName: '#32770' WindowName: 'KsCeter 12.0'
- ClassName: '#32770' WindowName: 'KsCeter 12.1'
- ClassName: '#32770' WindowName: 'KsCeter 11.8'
- ClassName: '#32770' WindowName: 'KsCeter 11.9'
- ClassName: '#32770' WindowName: 'KsCeter 12.2'
- ClassName: '#32770' WindowName: 'KsCeter 12.5'
- ClassName: '#32770' WindowName: 'KsCeter 12.6'
- ClassName: '#32770' WindowName: 'KsCeter 12.3'
- ClassName: '#32770' WindowName: 'KsCeter 12.4'
- ClassName: '#32770' WindowName: 'KsCeter 14.7'
- ClassName: '#32770' WindowName: 'KsCeter 14.8'
- ClassName: '#32770' WindowName: 'KsCeter 14.5'
- ClassName: '#32770' WindowName: 'KsCeter 14.6'
- ClassName: '#32770' WindowName: 'KsCeter 14.9'
- ClassName: '#32770' WindowName: 'KsCeter 15.2'
- ClassName: '#32770' WindowName: 'KsCeter 15.3'
- ClassName: '#32770' WindowName: 'KsCeter 15.0'
- ClassName: '#32770' WindowName: 'KsCeter 15.1'
- ClassName: '#32770' WindowName: 'KsCeter 13.8'
- ClassName: '#32770' WindowName: 'KsCeter 13.9'
- ClassName: '#32770' WindowName: 'KsCeter 13.6'
- ClassName: '#32770' WindowName: 'KsCeter 13.7'
- ClassName: '#32770' WindowName: 'KsCeter 14.0'
- ClassName: '#32770' WindowName: 'KsCeter 14.3'
- ClassName: '#32770' WindowName: 'KsCeter 14.4'
- ClassName: '#32770' WindowName: 'KsCeter 14.1'
- ClassName: '#32770' WindowName: 'KsCeter 14.2'
- ClassName: '#32770' WindowName: 'KsCeter 9.3'
- ClassName: '#32770' WindowName: 'KsCeter 9.4'
- ClassName: '#32770' WindowName: 'KsCeter 9.1'
- ClassName: '#32770' WindowName: 'KsCeter 9.2'
- ClassName: '#32770' WindowName: 'KsCeter 9.5'
- ClassName: '#32770' WindowName: 'KsCeter 9.8'
- ClassName: '#32770' WindowName: 'KsCeter 9.9'
- ClassName: '#32770' WindowName: 'KsCeter 9.6'
- ClassName: '#32770' WindowName: 'KsCeter 9.7'
- ClassName: '#32770' WindowName: 'KsCeter 8.4'
- ClassName: '#32770' WindowName: 'KsCeter 8.5'
- ClassName: '#32770' WindowName: 'KsCeter 8.2'
- ClassName: '#32770' WindowName: 'KsCeter 8.3'
- ClassName: '#32770' WindowName: 'KsCeter 8.6'
- ClassName: '#32770' WindowName: 'KsCeter 8.9'
- ClassName: '#32770' WindowName: 'KsCeter 9.0'
- ClassName: '#32770' WindowName: 'KsCeter 8.7'
- ClassName: '#32770' WindowName: 'KsCeter 8.8'
- ClassName: '#32770' WindowName: 'KsCeter 11.1'
- ClassName: '#32770' WindowName: 'KsCeter 11.2'
- ClassName: '#32770' WindowName: 'KsCeter 10.9'
- ClassName: '#32770' WindowName: 'KsCeter 11.0'
- ClassName: '#32770' WindowName: 'KsCeter 11.3'
- ClassName: '#32770' WindowName: 'KsCeter 11.6'
- ClassName: '#32770' WindowName: 'KsCeter 11.7'
- ClassName: '#32770' WindowName: 'KsCeter 11.4'
- ClassName: '#32770' WindowName: 'KsCeter 11.5'
- ClassName: '#32770' WindowName: 'KsCeter 10.2'
- ClassName: '#32770' WindowName: 'KsCeter 10.3'
- ClassName: '#32770' WindowName: 'KsCeter 10.0'
- ClassName: '#32770' WindowName: 'KsCeter 10.1'
- ClassName: '#32770' WindowName: 'KsCeter 10.4'
- ClassName: '#32770' WindowName: 'KsCeter 10.7'
- ClassName: '#32770' WindowName: 'KsCeter 10.8'
- ClassName: '#32770' WindowName: 'KsCeter 10.5'
- ClassName: '#32770' WindowName: 'KsCeter 10.6'