Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'System32' = '<Full path to virus>'
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_42 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_45 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_40 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_36 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_37 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_39 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_54 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_56 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_57 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_52 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_46 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_49 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_50 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_20 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_21 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_23 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_18 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_13 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_15 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_17 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_31 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_33 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_34 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_29 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_24 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_26 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_27 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_28 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_30 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_32 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_26 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_22 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_23 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_25 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_40 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_42 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_38 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_33 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_35 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_36 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_06 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_07 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_09 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_03 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_59 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_00 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_02 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_17 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_19 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_20 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_15 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_10 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_12 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_13 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_13 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_14 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_17 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_11 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_06 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_08 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_10 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_24 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_26 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_27 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_23 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_18 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_20 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_21 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_46 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_48 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_50 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_44 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_27 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_34 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_01 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_03 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_04 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_00 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_51 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_53 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_55 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_58 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_59 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_01 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_56 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_51 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_52 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_55 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_08 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_10 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_12 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_07 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_02 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_04 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_05 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_35 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_37 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_39 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_34 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_29 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_30 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_32 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_46 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_48 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_49 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_45 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_40 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_42 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_42 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_45 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_40 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_36 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_37 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_39 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_54 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_56 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_57 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_52 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_46 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_49 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_50 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_20 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_21 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_23 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_18 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_13 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_15 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_17 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_31 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_33 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_34 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_29 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_24 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_26 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_27 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_28 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_30 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_32 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_26 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_22 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_23 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_25 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_40 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_42 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_38 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_33 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_35 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_36 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_06 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_07 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_09 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_03 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_59 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_00 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_02 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_17 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_19 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_20 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_15 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_10 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_12 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_35_13 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_13 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_14 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_17 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_11 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_06 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_08 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_10 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_24 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_26 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_27 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_23 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_18 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_20 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_21 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_46 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_48 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_50 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_44 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_27 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_34 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_43 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_01 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_03 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_04 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_00 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_51 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_53 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_32_55 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_58 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_59 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_01 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_56 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_51 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_52 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_55 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_08 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_10 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_12 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_07 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_02 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_04 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_34_05 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_35 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_37 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_39 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_34 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_29 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_30 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_32 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_46 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_48 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_49 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_45 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_40 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_42 PM.txt
- %ALLUSERSPROFILE%\DLLDownloadError_5_12_2012 4_33_43 PM.txt
- 'wa####k.net63.net':80
- 'sm##.gmail.com':587
- 'www.wa####k.net63.net':80
- '74.##5.232.51':80
- 'wp#d':80
- wa####k.net63.net/DLL/MessengerAPI.dll
- wa####k.net63.net/DLL/Interop.MessengerAPI.dll
- wp#d/wpad.dat
- www.wa####k.net63.net/Key/controller.ctrl
- DNS ASK wa####k.net63.net
- DNS ASK sm##.gmail.com
- DNS ASK www.wa####k.net63.net
- DNS ASK google.com
- DNS ASK wp#d
- ClassName: 'Indicator' WindowName: ''