Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SonyAgent' = '<Полный путь к вирусу>'
- <DRIVERS>\npf.sys
- <SYSTEM32>\wpcap.dll
- <SYSTEM32>\Packet.dll
- '95.##.228.11':80
- 'localhost':1074
- 'localhost':1077
- 'localhost':1080
- '11#.#2.185.61':80
- 'localhost':1068
- '5.##.62.251':80
- '86.##0.141.71':80
- '17#.#8.116.184':80
- 'localhost':1071
- '93.##1.147.19':80
- 'localhost':1089
- 'localhost':1092
- '18#.#30.66.60':80
- '19#.#42.242.139':80
- 'localhost':1083
- '17#.#72.198.3':80
- '78.##.115.80':80
- '93.##4.176.197':80
- 'localhost':1086
- 'localhost':1065
- 'localhost':1044
- '21#.#35.174.145':80
- '91.##5.186.3':80
- '19#.#42.122.94':80
- 'localhost':1047
- '94.##.176.198':80
- 'localhost':1035
- 'localhost':1038
- 'localhost':1041
- '95.##4.61.18':80
- 'localhost':1059
- '70.#5.170.0':80
- '87.##0.137.31':80
- '46.##7.85.113':80
- 'localhost':1062
- '95.##.134.232':80
- 'localhost':1050
- 'localhost':1053
- 'localhost':1056
- '46.##4.27.58':80
- 18#.#30.66.60/install.htm