Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\HsSword] 'ImagePath' = '<DRIVERS>\HsSword.sys'
- 'HsSword' <DRIVERS>\HsSword.sys
- %WINDIR%\syswow64\drivers\hssword.sys
- 'zn##.com':80
- 'fp######ad2.macromedia.com':80
- http://www.zn##.com/soft/swf/Behead.swf
- http://fp######ad2.macromedia.com/get/flashplayer/update/current/install/version.xml19.0.0.207~installVector=2&lang=en&cpuWordLength=64&playerType=ax&os=win&osVer=13
- DNS ASK zn##.com
- DNS ASK fp######ad2.macromedia.com