Техническая информация
- '<SYSTEM32>\Tdshow.exe'
- '<SYSTEM32>\lmgvccwk.exe'
- '<SYSTEM32>\ipconfig.exe' /flushdns
- %WINDIR%\Explorer.EXE
- <SYSTEM32>\Tdshow.exe
- <SYSTEM32>\monwb.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\tudou[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\tudou[1]
- <SYSTEM32>\wsjyclbf.exe
- <SYSTEM32>\ldguard.dll
- <SYSTEM32>\lmgvccwk.exe
- <SYSTEM32>\bd.ico
- <SYSTEM32>\avssffea.exe
- <SYSTEM32>\Apachio.dll
- <SYSTEM32>\hxmon.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\tudou[1]
- <DRIVERS>\etc\hosts
- 'da##.#2taojin.com':80
- 'localhost':1054
- 'www.tu##u.com':80
- 'da###.92taojin.com':80
- 'localhost':1039
- www.tu##u.com/?un##########################
- DNS ASK da##.#2taojin.com
- DNS ASK www.tu##u.com
- DNS ASK da###.92taojin.com
- ClassName: 'SysListView32' WindowName: 'FolderView'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'SHELLDLL_DefView' WindowName: ''