Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Microsoft Word UpDate.lnk
- %PROGRAM_FILES%\Windows Media Player\SearchIndex.exe
- %PROGRAM_FILES%\Windows Media Player\Search.exe
- %TEMP%\101765_res.tmp
- %TEMP%\101796_res.tmp
- %TEMP%\ids_132.tmp
- %PROGRAM_FILES%\Windows Media Player\<Имя вируса>.exe
- 'www.ya####uservice.com':8443
- DNS ASK www.ya####uservice.com