Техническая информация
- %PROGRAM_FILES%\Baidu\AddressBar\ASBarBroker.exe -RegServer
- <SYSTEM32>\temp\iebarLite.exe
- <Текущая директория>\assist.exe http://da##.itc.cn/upload/20110407/20110407/0406/popwin_test2.html http
- <SYSTEM32>\svchost.exe -k HTTPFilter
- %PROGRAM_FILES%\Baidu\AddressBar\AddressBar_Tmp\AddressBar.dll
- %TEMP%\nsj2.tmp
- %PROGRAM_FILES%\Baidu\AddressBar\AddressBar.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\popwin_test2[1].html
- %PROGRAM_FILES%\Baidu\AddressBar\ASBarBroker.exe
- <SYSTEM32>\temp\iebarLite.exe
- <Текущая директория>\100GameAgent.dll
- <Текущая директория>\client.ini
- <Текущая директория>\assist.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\popwin_test2[1].html
- <Текущая директория>\url.xml
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\popwin_test2[1].html
- <Текущая директория>\assist.exe
- 'localhost':1036
- 'da##.itc.cn':80
- 'localhost':1033
- da##.itc.cn/upload/20110407/20110407/0406/popwin_test2.html
- DNS ASK da##.itc.cn
- '<IP-адрес в локальной сети>':1034
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Progman' WindowName: ''
- ClassName: 'SHELLDLL_DefView' WindowName: ''