Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'SunJava' = '%APPDATA%\Sunjava\SunJava.exe'
- hidden files
- file extensions
- %WINDIR%\explorer.exe %TEMP%\<Virus name>.jpg
- %TEMP%\<Virus name>.jpg
- %TEMP%\~DF46D1.tmp
- 'localhost':1036
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''