Technical Information
- '<SYSTEM32>\rundll32.exe' dfdts.dll,DfdGetDefaultPolicyAndSMART
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\737[1].html
- %TEMP%\4c62f6eb-08f8-4186-9bb0-6936029afa91\config.dmc
- %TEMP%\dfs27EA.tmp
- 'tr###.##.sslsecure10.com':80
- 'tr###.#2.sslsecure9.com':80
- 'ap#.##.sslsecure2.com':80
- 'ap#.##.sslsecure1.com':80
- 'tr###.#2.sslsecure6.com':80
- 'tr###.#2.sslsecure5.com':80
- 'tr###.#2.sslsecure8.com':80
- 'tr###.#2.sslsecure7.com':80
- 'ap#.##.sslsecure3.com':80
- 'ap#.##.sslsecure9.com':80
- 'ap#.##.sslsecure8.com':80
- 'dt####.secdls.com':80
- 'ap#.##.sslsecure10.com':80
- 'ap#.##.sslsecure5.com':80
- 'ap#.##.sslsecure4.com':80
- 'ap#.##.sslsecure7.com':80
- 'ap#.##.sslsecure6.com':80
- 'tr###.#2.sslsecure4.com':80
- 'st#####r.sslsecure3.com':80
- 'st#####r.sslsecure2.com':80
- 'st#####r.sslsecure5.com':80
- 'st#####r.sslsecure4.com':80
- 'ap#.##.secdls.com':80
- 'localhost':64253
- 'st#####r.sslsecure1.com':80
- 'st#####r.cloudbox10.com':80
- 'st#####r.sslsecure6.com':80
- 'tr###.#2.sslsecure1.com':80
- 'tr###.v2.secdls.com':80
- 'tr###.#2.sslsecure3.com':80
- 'tr###.#2.sslsecure2.com':80
- 'st#####r.sslsecure8.com':80
- 'st#####r.sslsecure7.com':80
- 'st######.sslsecure10.com':80
- 'st#####r.sslsecure9.com':80
- ap#.##.secdls.com/test.html
- tr###.##.sslsecure10.com/test.html
- ap#.##.sslsecure2.com/test.html
- ap#.##.sslsecure1.com/test.html
- tr###.#2.sslsecure7.com/test.html
- tr###.#2.sslsecure6.com/test.html
- tr###.#2.sslsecure9.com/test.html
- tr###.#2.sslsecure8.com/test.html
- ap#.##.sslsecure3.com/test.html
- ap#.##.sslsecure9.com/test.html
- ap#.##.sslsecure8.com/test.html
- ap#.##.secdls.com/index.php/api/151/New_Player/604/737/English.xml
- ap#.##.sslsecure10.com/test.html
- ap#.##.sslsecure5.com/test.html
- ap#.##.sslsecure4.com/test.html
- ap#.##.sslsecure7.com/test.html
- ap#.##.sslsecure6.com/test.html
- tr###.#2.sslsecure5.com/test.html
- st#####r.sslsecure4.com/test.html
- st#####r.sslsecure3.com/test.html
- st#####r.sslsecure6.com/test.html
- st#####r.sslsecure5.com/test.html
- st#####r.cloudbox10.com/test.html
- ap#.##.secdls.com/index.php/apiLoading/737.html
- st#####r.sslsecure2.com/test.html
- st#####r.sslsecure1.com/test.html
- st#####r.sslsecure7.com/test.html
- tr###.#2.sslsecure2.com/test.html
- tr###.#2.sslsecure1.com/test.html
- tr###.#2.sslsecure4.com/test.html
- tr###.#2.sslsecure3.com/test.html
- st#####r.sslsecure9.com/test.html
- st#####r.sslsecure8.com/test.html
- tr###.v2.secdls.com/test.html
- st######.sslsecure10.com/test.html
- dt####.secdls.com/debugMessage/
- DNS ASK tr###.##.sslsecure10.com
- DNS ASK tr###.#2.sslsecure9.com
- DNS ASK ap#.##.sslsecure2.com
- DNS ASK ap#.##.sslsecure1.com
- DNS ASK tr###.#2.sslsecure6.com
- DNS ASK tr###.#2.sslsecure5.com
- DNS ASK tr###.#2.sslsecure8.com
- DNS ASK tr###.#2.sslsecure7.com
- DNS ASK ap#.##.sslsecure3.com
- DNS ASK ap#.##.sslsecure9.com
- DNS ASK ap#.##.sslsecure8.com
- DNS ASK dt####.secdls.com
- DNS ASK ap#.##.sslsecure10.com
- DNS ASK ap#.##.sslsecure5.com
- DNS ASK ap#.##.sslsecure4.com
- DNS ASK ap#.##.sslsecure7.com
- DNS ASK ap#.##.sslsecure6.com
- DNS ASK st#####r.sslsecure4.com
- DNS ASK st#####r.sslsecure3.com
- DNS ASK st#####r.sslsecure6.com
- DNS ASK st#####r.sslsecure5.com
- DNS ASK st#####r.cloudbox10.com
- DNS ASK ap#.##.secdls.com
- DNS ASK st#####r.sslsecure2.com
- DNS ASK st#####r.sslsecure1.com
- DNS ASK st#####r.sslsecure7.com
- DNS ASK tr###.#2.sslsecure2.com
- DNS ASK tr###.#2.sslsecure1.com
- DNS ASK tr###.#2.sslsecure4.com
- DNS ASK tr###.#2.sslsecure3.com
- DNS ASK st#####r.sslsecure9.com
- DNS ASK st#####r.sslsecure8.com
- DNS ASK tr###.v2.secdls.com
- DNS ASK st######.sslsecure10.com
- ClassName: 'MS_WebCheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'