Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'logview32' = '%APPDATA%\logview32.exe '
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'logview32' = '%APPDATA%\logview32.exe '
- %HOMEPATH%\Start Menu\Programs\Startup\logview32.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\logview32.lnk
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\0[1].txt
- %APPDATA%\logview32.exe
- %HOMEPATH%\Start Menu\Programs\Startup\logview32.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\logview32.lnk
- '5.#.88.246':80
- http://5.#.88.246/ip/0.txt
- '%APPDATA%\logview32.exe'