Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Smgp' = '<Full path to file>'
- <SYSTEM32>\Smgp.ini
- <SYSTEM32>\Smgp.dll
- <SYSTEM32>\Coolrun.dll
- <SYSTEM32>\WBSmgp.dll
- <Current directory>\SmgpBJ.exe
- <SYSTEM32>\BlackList.ini
- 'localhost':1037
- '21#.#53.33.67':80
- http://21#.#53.33.67/GetSmgpini.asp
- http://21#.#53.33.67/Download/Smgp.dll
- http://21#.#53.33.67/Download/Coolrun.dll
- http://21#.#53.33.67/Download/WBSmgp.dll
- http://21#.#53.33.67/Download/SmgpBJ.exe
- http://21#.#53.33.67/Download/BlackList.txt