Техническая информация
- <SYSTEM32>\hs32idir.exe
- <SYSTEM32>\hs32idir.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\virusproducts[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\virusproducts[1].exe
- %TEMP%\virusproducts.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\virusproducts[1].exe
- 'hs###dir.com':80
- hs###dir.com/virusproducts.exe
- DNS ASK hs###dir.com
- ClassName: 'SysListView32' WindowName: ''
- ClassName: '#32770' WindowName: ''