Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '<Имя вируса>.exe' = '<Полный путь к вирусу>'
- <Текущая директория>\Configs.txt
- 'www.es#####dfs.hpg.com.br':80
- '<L###LNET>.0.2':80
- 'www.me#######sportesss.hpg.com.br':80
- 'www.cu#####lz.hpg.com.br':80
- http://www.es#####dfs.hpg.com.br/newlife2012/frases.jpg
- http://www.cu#####lz.hpg.com.br/newlife2011/configs.jpg
- http://www.me#######sportesss.hpg.com.br/newlife2010/configs.jpg
- http:// via <L###LNET>.0.2
- DNS ASK www.es#####dfs.hpg.com.br
- DNS ASK www.cu#####lz.hpg.com.br
- DNS ASK www.me#######sportesss.hpg.com.br
- ClassName: 'Indicator' WindowName: ''