Technical Information
- '<SYSTEM32>\taskkill.exe' /F /T /IM HSUpdate.exe
- '<SYSTEM32>\cmd.exe' /c taskkill /F /T /IM HSUpdate.exe
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\asdasdsa[1].txt
- 'si##.ucoz.com':80
- http://si##.ucoz.com/asdasdsa.txt
- DNS ASK si##.ucoz.com