'<SYSTEM32>\cmd.exe' /c copy "<Full path to virus>" "<Full path to virus>.exe"
'<SYSTEM32>\cmd.exe' /c "<Full path to virus>.exe" /res >%tEMP%\fio.Bat
'<Full path to virus>.exe' /res
Modifies file system:
Creates the following files:
<SYSTEM32>\pdrv.dll
%TEMP%\fio.Bat
<Full path to virus>.exe
<DRIVERS>\pdrv.sys
Network activity:
Connects to:
'localhost':8085
Download Dr.Web for Android
Free three-month trial
All protection features available
Renew your trial license in AppGallery/on Google Pay
By continuing to use this website, you are consenting to Doctor Web’s use of cookies and other technologies related to the collection of visitor statistics. Learn more