Technical Information
- [<HKLM>\SOFTWARE\Classes\CLSID\{e17d4fc0-5564-11d1-83f2-00a0c90dc849}\Shell\Open\Command] '' = '%PROGRAM_FILES%\Internet Explorer\Connection Wizard\iexplore.exe http://www.163daohang.net/'
- %WINDIR%\cachtmp\МШјЫ-МФ±¦Нш.Html
- <SYSTEM32>\taobao.ico
- %HOMEPATH%\Desktop\IO?U-IO±¦Io.lnk
- %PROGRAM_FILES%\Internet Explorer\Connection Wizard\iexplore.exe
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
- %WINDIR%\cachtmp\taobao.ico
- %TEMP%\taobao.ico
- %TEMP%\innorun.dll
- %TEMP%\prodat.gif
- %TEMP%\nsz2.tmp\System.dll
- %TEMP%\winusa.gif
- 'localhost':1035
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''