Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

Win32.HLLW.Digs.23

Added to the Dr.Web virus database: 2015-06-18

Virus description added:

Technical Information

Modifies file system :
Moves itself:
  • from <Full path to virus> to %WINDIR%\1701742442\ctfmon
Deletes itself.
Network activity:
Connects to:
  • 're####linicx.info':80
TCP:
HTTP POST requests:
  • http://re#####inicx.info:80/new/Panel/gate.php via re####linicx.info
UDP:
  • DNS ASK re####linicx.info
Miscellaneous:
Searches for the following windows:
  • ClassName: '#32770' WindowName: 'Windows Task Manager'