Technical Information
- <SYSTEM32>\mswsock.dll with <SYSTEM32>\mswsock.dll
- <SYSTEM32>\mswsock.dll
- <SYSTEM32>\pe.dll
- <SYSTEM32>\rpcso4.dll
- from <SYSTEM32>\mswsock.dll to <SYSTEM32>\~NET1F.tmp
- from <Full path to virus> to %TEMP%\Tm147437.dat
- '12#.#33.252.147':80
- '20#.#6.18.94':80
- 12#.#33.252.147/news/zzejbpmz.asp?id################
- 12#.#33.252.147/news/gipobmya.asp?id################
- 12#.#33.252.147/news/dnkbpulm.asp?id####################
- 20#.#6.18.94/news/tpldtshg.asp?id################
- 12#.#33.252.147/news/zchweusb.asp?id################