Техническая информация
- [<HKLM>\SOFTWARE\Classes\CLSID\{1f4de370-d627-11d1-ba4f-00a0c91eedba}\shell\Open\Command] '' = 'explorer.exe h%t%t%p%:%/%/%7w%7w%7w%.%3d%3h%24%23%22%21%.%3c%3o%3m%/%?%6s%6y%6s%6t%6e%6m'
- [<HKLM>\SOFTWARE\Classes\CLSID\{e17d4fc0-5564-11d1-83f2-00a0c90dc849}\shell\Open\Command] '' = 'explorer.exe h%t%t%p%:%/%/%3t.%3g%3o%24%23%22%21.%3c%3o%3m%/%?%2i%2e%2i%2c%2o%2n'
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://www.38##2.com/baohanye.htm
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://tc.##4321.com/
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://ju###.#1119.cn:27889/report3.ashx?m=#######################################################################################
- %HOMEPATH%\Desktop\ГАЕ®АЦФ°.url
- %HOMEPATH%\Desktop\ГАЕ®КУЖµ.url
- %HOMEPATH%\Start Menu\Internet Explorer.lnk
- %APPDATA%\skin.ini
- <SYSTEM32>\tbhdz.ico
- %HOMEPATH%\Favorites\СФЗйРЎЛµ.url
- %HOMEPATH%\Favorites\ѕ«ІКРЎУОП·.url
- %HOMEPATH%\Favorites\НшЦ·ґуИ«.url
- %HOMEPATH%\Desktop\°ЛШФЙ«Нј.url
- %HOMEPATH%\Desktop\ґґТµН¶ЧКєГПоДї.url
- 'localhost':1041
- 'www.38##2.com':80
- 'tc.##4321.com':80
- 'localhost':1037
- 'localhost':1039
- 'ju###.41119.cn':27889
- http://tc.##4321.com/
- http://www.38##2.com/baohanye.htm
- DNS ASK tc.##4321.com
- DNS ASK www.38##2.com
- DNS ASK ju###.41119.cn
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''