Technical Information
- [<HKLM>\SOFTWARE\Classes\HaoZip.cpio\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.tbz2\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.lzma86\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.uue\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.001\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.rpm\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.7z\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.swm\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.cab\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.tgz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.arj\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.img\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.txz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.zipx\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.hzskin\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.alz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.xz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.isz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.ace\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.rar.split\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.sfxv\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.zip.split\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.tbz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.bz2\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.z\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.lzh\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.xpi\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.bz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.tar\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.zip\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.dmg\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.tpz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.gz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.deb\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.bzip2\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.taz\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.lha\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.lzma\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.xar\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.rar\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.wim\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.iso\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.gzip\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SOFTWARE\Classes\HaoZip.hfs\shell\open\command] '' = '"%ProgramFiles%\HaoZip\HaoZip.exe" "%1"'
- [<HKLM>\SYSTEM\ControlSet001\Services\HaozipVirtualCDBus] 'ImagePath' = 'system32\DRIVERS\HaoZipVirtualCDBus.sys'
- ClassName: '', WindowName: 'Process Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- ClassName: '', WindowName: 'Registry Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'RegmonClass', WindowName: ''
- ClassName: '', WindowName: 'File Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'GBDYLLO', WindowName: ''
- ClassName: 'OLLYDBG', WindowName: ''
- ClassName: 'FilemonClass', WindowName: ''
- ClassName: 'pediy06', WindowName: ''
- %HOMEPATH%\Start Menu\Programs\好压\好压实用工具\批量字符替换.lnk
- %HOMEPATH%\Start Menu\Programs\好压\好压帮助指南.lnk
- %HOMEPATH%\Start Menu\Programs\好压\好压实用工具\虚拟光驱.lnk
- %HOMEPATH%\Start Menu\Programs\好压\好压实用工具\批量文件改名.lnk
- %HOMEPATH%\Start Menu\Programs\好压\好压版本升级.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压实用工具\MD5校验.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压实用工具\虚拟光驱.lnk
- %HOMEPATH%\Start Menu\Programs\好压\卸载好压.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压.lnk
- %HOMEPATH%\Start Menu\Programs\好压\好压实用工具\MD5校验.lnk
- %ProgramFiles%\HaoZip\HaozipCD.dll
- %ProgramFiles%\HaoZip\HaoZipVirtualCDBus.inf
- %ProgramFiles%\HaoZip\HaoZipExt.dll
- %ProgramFiles%\HaoZip\HaoZipCD.exe
- %ProgramFiles%\HaoZip\HaoZipVirtualCDBus.sys
- %HOMEPATH%\Start Menu\好压.lnk
- %HOMEPATH%\Start Menu\Programs\好压\好压.lnk
- %ProgramFiles%\HaoZip\haozipvirtualcdbus.cat
- %ProgramFiles%\HaoZip\Uninstall.exe
- <DRIVERS>\HaoZipVirtualCDBus.sys
- <SYSTEM32>\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\oem3.CAT
- %TEMP%\nsm3.tmp\nsDialogs.dll
- %ProgramFiles%\HaoZip\config\HaoZipCD.hzc
- %WINDIR%\inf\oem3.inf
- %WINDIR%\Temp\OLD10.tmp
- <DRIVERS>\SET11.tmp
- %WINDIR%\inf\oem3.PNF
- %WINDIR%\LastGood\TMPF.tmp
- %ProgramFiles%\HaoZip\config\HaoZip.ust
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压帮助指南.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压版本升级.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压实用工具\批量文件改名.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\好压实用工具\批量字符替换.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\好压\卸载好压.lnk
- %ProgramFiles%\HaoZip\config\HaoZip.hzc
- %TEMP%\HZ~8.tmp
- %ProgramFiles%\HaoZip\config\HaoZip.hzv
- %ProgramFiles%\HaoZip\config\HaoZip.hzs
- %ProgramFiles%\HaoZip\HaoZipLoader.exe
- %ProgramFiles%\HaoZip\HaoZipRename.exe
- %ProgramFiles%\HaoZip\HaoZipC.exe
- %ProgramFiles%\HaoZip\HaoZipScan.exe
- %ProgramFiles%\HaoZip\HaoZipReplace.exe
- %ProgramFiles%\HaoZip\config\HaoZipLang.ini
- %ProgramFiles%\HaoZip\HaoZip.chm
- %ProgramFiles%\HaoZip\HaoZipMd5.exe
- %ProgramFiles%\HaoZip\lang\HaoZipLang_chs.dll
- %ProgramFiles%\HaoZip\HaoZipUpdate.exe
- %TEMP%\nsg2.tmp
- %TEMP%\nsm3.tmp\FileInfo.dll
- <SYSTEM32>\2345haozip_k58347464.exe
- <SYSTEM32>\empty.exe
- %TEMP%\nsm3.tmp\System.dll
- %TEMP%\nsm3.tmp\HaoZipLogo_chs.bmp
- %ProgramFiles%\HaoZip\HaoZip.exe
- %TEMP%\nsm3.tmp\modern-header.bmp
- <SYSTEM32>\bill.ini
- %ProgramFiles%\HaoZip\HaoZipEditor.dll
- %ProgramFiles%\HaoZip\sfx\HaoZip7zCon.sfx
- %ProgramFiles%\HaoZip\HaoZipCom.dll
- %ProgramFiles%\HaoZip\UNACEV2.DLL
- %ProgramFiles%\HaoZip\sfx\HaoZip7zSetup.sfx
- %ProgramFiles%\HaoZip\skins\HaoZip.skn
- %ProgramFiles%\HaoZip\skins\HaoZip.xml
- %ProgramFiles%\HaoZip\HaoZipUI.dll
- %ProgramFiles%\HaoZip\skins\HaoZip.dui
- %ProgramFiles%\HaoZip\HaoZipFormats.dll
- %ProgramFiles%\HaoZip\ZipNew.data
- %ProgramFiles%\HaoZip\TarNew.data
- %ProgramFiles%\HaoZip\2345好压免责声明.txt
- %ProgramFiles%\HaoZip\7zNew.data
- %ProgramFiles%\HaoZip\RarNew.data
- %ProgramFiles%\HaoZip\HaoZipImage.dll
- %ProgramFiles%\HaoZip\HaoZip.dll
- %ProgramFiles%\HaoZip\Microsoft.VC80.CRT.manifest
- %ProgramFiles%\HaoZip\msvcr80.dll
- <SYSTEM32>\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\oem3.CAT
- %WINDIR%\Temp\OLD10.tmp
- <DRIVERS>\HaoZipVirtualCDBus.sys
- from %WINDIR%\LastGood\TMPF.tmp to %WINDIR%\LastGood\system32\DRIVERS\HaoZipVirtualCDBus.sys
- from %TEMP%\HZ~8.tmp to %ProgramFiles%\HaoZip\config\HaoZip.hzc
- <DRIVERS>\HaoZipVirtualCDBus.sys
- 'up####.haozip.com':80
- 'so##.org':80
- http://www.so##.org/bd/yz.txt via so##.org
- http://up####.haozip.com/
- DNS ASK up####.haozip.com
- DNS ASK www.so##.org
- ClassName: '#32770' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- '%ProgramFiles%\HaoZip\HaoZipLoader.exe' -statistics ;;K18;K01
- '%ProgramFiles%\HaoZip\HaoZipUpdate.exe' -install
- '%ProgramFiles%\HaoZip\HaoZipCD.exe' ld -am
- '<SYSTEM32>\2345haozip_k58347464.exe'
- '%ProgramFiles%\HaoZip\HaoZipLoader.exe' -install02 0 5
- '%ProgramFiles%\HaoZip\HaoZip.exe' --remove:
- '<SYSTEM32>\runonce.exe' -r