Technical Information
- [HKLM\System\CurrentControlSet\Services\ialdnwxf] 'ImagePath' = '<Current directory>\my.sys'
- 'ialdnwxf' <Current directory>\my.sys
- <Current directory>\my.sys
- %WINDIR%\temp\udddc4a.tmp
- %WINDIR%\temp\udddc4a.tmp
- <Current directory>\my.sys
- 'hi.##idu.com':80
- 'in####ow.baidu.com':443
- http://hi.##idu.com/332367819ЅЬёз/blog/item/16d0b3d288fdd2399d163dec.html
- http://hi.##idu.com/332367819ЅЬёз/blog/item/6dfb7251e2b29e04cffca3f6.html
- 'hi.##idu.com':443
- DNS ASK hi.##idu.com
- DNS ASK in####ow.baidu.com