Техническая информация
- %PROGRAM_FILES%\baidu\new.exe uncompress -s dsop8.xml -d go6002.exe
- %PROGRAM_FILES%\baidu\go6002.exe
- %TEMP%\nsr2.tmp\ns5.tmp net stop Dhcp
- %TEMP%\nsr2.tmp\ns3.tmp cmd.exe /c netsh -c interface dump>c:\ipconfig.txt
- %TEMP%\nsr2.tmp\ns4.tmp cmd.exe /c netsh interface ip set address name="Local Area Connection" source=dhcp
- <SYSTEM32>\net1.exe stop Dhcp
- <SYSTEM32>\net.exe stop Dhcp
- C:\ipconfig.txt
- %PROGRAM_FILES%\baidu\go6002.exe
- %TEMP%\nsr2.tmp\ns5.tmp
- %TEMP%\nsr2.tmp\Math.dll
- %TEMP%\nsr2.tmp\ns4.tmp
- %TEMP%\nsr7.tmp\System.dll
- %PROGRAM_FILES%\Internet Explorer.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Жф¶Ї Intrenet Expolrer дЇААЖч.lnk
- %TEMP%\nsr7.tmp\NSISArray.dll
- %TEMP%\nsr7.tmp\nsRandom.dll
- %TEMP%\nsr7.tmp\AccessControl.dll
- %TEMP%\nsr2.tmp\System.dll
- %PROGRAM_FILES%\baidu\tempnethome18.ini
- %PROGRAM_FILES%\baidu\dsop8.xml
- %PROGRAM_FILES%\baidu\opt256.xml
- %PROGRAM_FILES%\baidu\new.exe
- %PROGRAM_FILES%\baidu\uninst18.exe
- %TEMP%\nsr2.tmp\nsExec.dll
- %TEMP%\nsr2.tmp\ns3.tmp
- %TEMP%\nsr2.tmp\Internet.dll
- %TEMP%\nsr2.tmp\nsRandom.dll
- %TEMP%\nsr2.tmp\AccessControl.dll
- %TEMP%\nsr2.tmp\ns5.tmp
- %TEMP%\nsr2.tmp\ns4.tmp
- %TEMP%\nsr2.tmp\ns3.tmp
- 'tj.#ogle.cn':80
- tj.#ogle.cn/svr.asp?t=#################################
- DNS ASK tj.#ogle.cn
- ClassName: 'Shell_TrayWnd' WindowName: ''