Technical Information
- User Account Control (UAC)
- <SYSTEM32>\regsvr32.exe /s <SYSTEM32>\vkbf606.dll
- <SYSTEM32>\reg.exe ADD HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System /v EnableLUA /t REG_DWORD /d 0 /f
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\tempx[1].jpg
- <SYSTEM32>\vkbf606.dll
- %WINDIR%\vkbf4568.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\lixo5[1].jpg
- 'ma####4fev.hut2.ru':80
- ma####4fev.hut2.ru/tempx.jpg
- ma####4fev.hut2.ru/lixo5.jpg
- DNS ASK ma####4fev.hut2.ru
- '<Private IP address>':1035