Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Dofus1.29' = '%APPDATA%\Dofus.exe'
- User Account Control (UAC)
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoControlPanel' = '00000001'
- <Full path to virus>
- from <Full path to virus> to %APPDATA%\Dofus.exe
- 'an####-video.net':80
- 'wp#d':80
- an####-video.net/DofusMultiKey/Liste/liste.id
- wp#d/wpad.dat
- DNS ASK an####-video.net
- DNS ASK wp#d
- '<Private IP address>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''