Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SonyAgent' = '<Полный путь к вирусу>'
- \Device\HarddiskVolume1\Boot\BCD
- \Device\HarddiskVolume1\Boot\BCD.LOG
- <Полный путь к вирусу>
- '46.##3.80.11':80
- 'localhost':49200
- 'localhost':49203
- 'localhost':49206
- '10#.#62.33.45':80
- '31.##8.186.43':80
- '10#.#.33.131':80
- 'localhost':49191
- 'localhost':49194
- 'localhost':49197
- '10#.191.5.5':80
- '92.##5.55.44':80
- '81.##0.246.11':80
- '46.##.240.29':80
- '18#.#54.163.37':80
- '20#.#3.40.50':80
- 'localhost':49215
- 'localhost':49209
- '46.##.73.119':80
- '19#.#14.154.11':80
- '5.##5.75.42':80
- 'localhost':49212
- '10#.#7.56.32':80
- 'localhost':49167
- 'localhost':49170
- 'localhost':49173
- '61.#7.94.4':80
- '10#.#6.13.101':80
- '46.##5.64.11':80
- 'localhost':49158
- 'localhost':49161
- 'localhost':49164
- '17#.#82.70.33':80
- 'localhost':49185
- '91.##1.202.75':80
- '5.#.3.190':80
- '92.##.137.17':80
- 'localhost':49188
- 'localhost':49182
- 'localhost':49176
- '18#.#31.227.24':80
- '15#.#24.196.74':80
- '19#.#07.226.25':80
- 'localhost':49179
- 20#.#3.40.50/default.htm
- 18#.#54.163.37/online.htm
- 92.##5.55.44/login.htm
- 46.##.240.29/login.htm