Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\chuppa] 'ImagePath' = 'system32\DRIVERS\super32.sys'
- [<HKLM>\SYSTEM\ControlSet001\Services\chuppa] 'Start' = '00000001'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\super32.sys[1].off
- <DRIVERS>\super32.sys
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\super32[1].sys
- 'www.re##dos.net':80
- 'localhost':1038
- 'www.un####oveis.com.br':80
- www.re##dos.net/img/super32.sys.off
- www.re##dos.net/img/super32.sys
- www.un####oveis.com.br/graficos/form.php
- DNS ASK www.re##dos.net
- DNS ASK www.un####oveis.com.br