Техническая информация
- <SYSTEM32>\virus_H1N1.bin
- <LS_APPDATA>\Microsoft\Windows Media\9.0\WMSDKNSD.XML
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\c68ccd2330a9c5c16a776c2b7a1ad88a[1].mp3
- <SYSTEM32>\virus_H2N2.bin
- %TEMP%\~sfx0047CA0F9C\glxpbuttonz.ocx
- %TEMP%\~sfx0047CA0F9C\glxpbuttonz.oca
- <LS_APPDATA>\Microsoft\Windows Media\9.0\WMSDKNS.XML.bak
- %TEMP%\~sfx0047CA0F9C\Patappasa X.21.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\c68ccd2330a9c5c16a776c2b7a1ad88a[1].mp3
- <LS_APPDATA>\Microsoft\Windows Media\9.0\WMSDKNS.XML.bak
- 'ww##.##dowebster.com':80
- 'localhost':1036
- ww##.##dowebster.com/c68ccd2330a9c5c16a776c2b7a1ad88a.mp3
- DNS ASK ww##.##dowebster.com
- ClassName: '' WindowName: 'HSUpdate'
- ClassName: 'Shell_TrayWnd' WindowName: ''