Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SonyAgent' = '<Полный путь к вирусу>'
- <DRIVERS>\npf.sys
- <SYSTEM32>\wpcap.dll
- <SYSTEM32>\Packet.dll
- '95.##.228.11':80
- 'localhost':1074
- 'localhost':1077
- 'localhost':1080
- '11#.#06.52.62':80
- 'localhost':1068
- '19#.#42.122.94':80
- '79.##4.248.10':80
- '11#.#2.185.61':80
- 'localhost':1071
- '94.##1.209.249':80
- 'localhost':1089
- 'localhost':1092
- '95.##0.68.25':80
- '67.##7.222.29':80
- 'localhost':1083
- '17#.#9.60.160':80
- '17#.#72.198.3':80
- '18#.#2.213.115':80
- 'localhost':1086
- 'localhost':1065
- 'localhost':1044
- '89.##0.123.54':80
- '10#.#07.121.8':80
- '46.##4.27.58':80
- 'localhost':1047
- '93.##5.33.41':80
- 'localhost':1035
- 'localhost':1038
- 'localhost':1041
- '21#.#96.198.21':80
- 'localhost':1059
- '78.##.116.109':80
- '17#.#37.91.247':80
- '80.##3.174.22':80
- 'localhost':1062
- '17#.#2.116.155':80
- 'localhost':1050
- 'localhost':1053
- 'localhost':1056
- '92.#4.66.27':80
- 95.##0.68.25/install.htm