Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

Win32.HLLM.Graz.377

Added to the Dr.Web virus database: 2016-06-05

Virus description added:

Technical Information

To ensure autorun and distribution:
Creates or modifies the following files:
  • %WINDIR%\win.ini
Modifies file system:
Creates the following files:
  • <Current directory>\log.dat
Network activity:
Connects to:
  • 'www.58###gwei.com':80
  • '23#.5.6.112':35768
TCP:
HTTP GET requests:
  • http://www.58###gwei.com/ux/getip.aspx
UDP:
  • DNS ASK www.58###gwei.com
  • '23#.5.6.112':35768