Meine Bibliothek
Meine Bibliothek

+ Zur Bibliothek hinzufügen

Support

Ihre Anfragen

Rufen Sie uns an

+7 (495) 789-45-86

Profil

Win32.HLLW.Digs.23

Added to the Dr.Web virus database: 2015-06-18

Virus description added:

Technical Information

Modifies file system :
Moves itself:
  • from <Full path to virus> to %WINDIR%\1701742442\ctfmon
Deletes itself.
Network activity:
Connects to:
  • 're####linicx.info':80
TCP:
HTTP POST requests:
  • http://re#####inicx.info:80/new/Panel/gate.php via re####linicx.info
UDP:
  • DNS ASK re####linicx.info
Miscellaneous:
Searches for the following windows:
  • ClassName: '#32770' WindowName: 'Windows Task Manager'