14.06.2012, 07:09
Malware info:
SHA256: 1e7b5014d522605704a417d54ac1acf5c20d67356290a7ac8d6431e015a932b7
SHA1: 98437a3bf5a5d6aa147c85bcf22e91d8a2bb6a79
MD5: 0a98ff044a4c19770ec6b5626fc6497e
File size: 71768 bytes
VT info (29/42):
Changes in the system:
SHA256: 1e7b5014d522605704a417d54ac1acf5c20d67356290a7ac8d6431e015a932b7
SHA1: 98437a3bf5a5d6aa147c85bcf22e91d8a2bb6a79
MD5: 0a98ff044a4c19770ec6b5626fc6497e
File size: 71768 bytes
VT info (29/42):
[Aby zobaczyć linki, zarejestruj się tutaj]
Changes in the system:
- Registry Key:
HKLM\System\CurrentControlSet\Services\LocalService_0x0\Parameters\ServiceDll: "C:\WINDOWS\system32\HI1.DLL"
HKLM\System\CurrentControlSet\Services\Windows Driver\ImagePath: "\??\C:\WINDOWS\system32\HI2.DLL"
Files:
C:\WINDOWS\system32\hi.ini
C:\WINDOWS\system32\HI1.DLL
C:\WINDOWS\system32\HI2.DLL
Treść widoczna jedynie dla zarejestrowanych użytkowników