Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\bd0001] 'Start' = '00000001'
- [<HKLM>\System\CurrentControlSet\Services\bd0001] 'ImagePath' = '<DRIVERS>\bd0001.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\bd0001] 'ImagePath' = 'system32\DRIVERS\bd0001.sys'
- [<HKLM>\System\CurrentControlSet\Services\bd0004] 'Start' = '00000001'
- [<HKLM>\System\CurrentControlSet\Services\bd0004] 'ImagePath' = '<DRIVERS>\bd0004.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\bd0004] 'ImagePath' = 'system32\DRIVERS\bd0004.sys'
- [<HKLM>\System\CurrentControlSet\Services\BDArKit] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\BDArKit] 'ImagePath' = '<DRIVERS>\BDArKit.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\BDArKit] 'ImagePath' = 'system32\DRIVERS\BDArKit.sys'
- [<HKLM>\System\CurrentControlSet\Services\BDMWrench_x64] 'Start' = '00000001'
- [<HKLM>\System\CurrentControlSet\Services\BDMWrench_x64] 'ImagePath' = '<DRIVERS>\BDMWrench_x64.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\BDMWrench_x64] 'ImagePath' = 'system32\DRIVERS\BDMWrench_x64.sys'
- [<HKLM>\System\CurrentControlSet\Services\bddlsvc] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\bddlsvc] 'ImagePath' = '"%APPDATA%\baidu\BaiduRJDownloader\1.6.0.67\bddlsvc.exe" -r'
- %TEMP%\nsud0c5.tmp
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\haiyanui.rdb
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\font_uninst.f
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\font_desc.f
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\color_uninst.clr
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\color_desc.clr
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\iebdsofthelperplug.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\bugreport.exe
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\mindownload.ico
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\bddlsvc.exe
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\bdmnetgetinfo.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin_engine.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\bdkitutils.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\appupdater.exe
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\bdsgproxydll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\uninstaller.exe
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\activityassistant.exe
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\text_cn.str
- %WINDIR%\temp\udde9bb.tmp
- %PROGRAMDATA%\baidu\common\global.db
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\taskinfo.db
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\taskinfo.db-journal
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\fwvcys.exe
- %WINDIR%\temp\uddf3ef.tmp
- %WINDIR%\temp\uddf342.tmp
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\uninstui.rdb
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\skin\text_uninst.str
- <DRIVERS>\bdmwrench_x64.sys
- <DRIVERS>\bdarkit.sys
- <DRIVERS>\bd0004.sys
- <SYSTEM32>\bd64_x86.dll
- <SYSTEM32>\bd64_x64.dll
- <DRIVERS>\bd0001.sys
- %WINDIR%\temp\uddf322.tmp
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\reportrecorddll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\config.xml
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\basedll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd0001.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bdsafebrowser.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bdmwrench_x64.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bdarkit.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\microsoft.vc80.crt\msvcr80.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd64_x64.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\microsoft.vc80.crt\msvcp80.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\microsoft.vc80.crt\microsoft.vc80.crt.manifest
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\microsoft.vc80.atl\atl80.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\microsoft.vc80.atl\microsoft.vc80.atl.manifest
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\dl.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivermanager.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\20000802.xml
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\microsoft.vc80.crt\msvcm80.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd64_x86.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd0004.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bdarkit.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\protocoldll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bd0001.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\reportdll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\utilsdll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\bdrcdl.exe
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bd64_x86.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bd64_x64.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bd0004.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bdsafebrowser.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bdmwrench.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bdmwrench_x64.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\drivers\bdarkit.sys
- %TEMP%\nsvd337.tmp\installhelper.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bd0004.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bd0001.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bdsafebrowser.sys
- %PROGRAMDATA%\application data\baidu\baidurjdownloader\config\4402.dat
- %PROGRAMDATA%\application data\baidu\baidurjdownloader\config\106.dat
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bd0001.sys
- %WINDIR%\temp\uddf3ef.tmp
- %WINDIR%\temp\uddf342.tmp
- %WINDIR%\temp\uddf322.tmp
- %WINDIR%\temp\udde9bb.tmp
- <SYSTEM32>\ntdll.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bdsafebrowser.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bdmwrench_x64.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\taskinfo.db-journal
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bdarkit.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd64_x64.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd0004.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd0001.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bdsafebrowser.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bdmwrench.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bdarkit.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x86\drivers\bd0004.sys
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\x64\drivers\bd64_x86.dll
- %TEMP%\nsvd337.tmp\installhelper.dll
- %APPDATA%\baidu\baidurjdownloader\1.6.0.67\taskinfo.db-journal
- DNS ASK cf#.####load.iyuntian.com
- DNS ASK dr.##.baidu.com
- DNS ASK rc.#####oad.iyuntian.com
- DNS ASK ba##u.com
- DNS ASK hb.##.baidu.com
- DNS ASK dt##.###nload.iyuntian.com
- DNS ASK p2#.###nload.baidu.com
- DNS ASK re##.###nload.iyuntian.com
- DNS ASK tk.#####oad.iyuntian.com
- '%APPDATA%\baidu\baidurjdownloader\1.6.0.67\bddlsvc.exe' -i
- '%APPDATA%\baidu\baidurjdownloader\1.6.0.67\fwvcys.exe' <Полный путь к файлу>
- '%APPDATA%\baidu\baidurjdownloader\1.6.0.67\bddlsvc.exe' -s
- '%APPDATA%\baidu\baidurjdownloader\1.6.0.67\bddlsvc.exe' -r