La mia libreria
La mia libreria

+ Aggiungi alla libreria

Supporto
Supporto 24/7 | Regole per contattare

Richieste

Profile

Win32.HLLW.Autoruner3.406

Aggiunto al database dei virus Dr.Web: 2019-10-18

La descrizione è stata aggiunta:

Technical Information

To ensure autorun and distribution
Creates the following files on removable media
  • <Drive name for removable media>:\setup.exe
  • <Drive name for removable media>:\autorun.inf
Malicious functions
Sets a new unauthorized home page for Windows Internet Explorer.
Modifies file system
Creates the following files
  • D:\install.exe
  • D:\autorun.inf
Network activity
Connects to
  • '35.##6.248.16':8181
UDP
  • DNS ASK en#######0oq.x.pipedream.net
  • DNS ASK aD#.##tbucket.com
  • DNS ASK uu.#######KTnFaJpdXjKou.readme.io
  • DNS ASK xb#########.BLvReelINPnWxndUNKxj.readme.io
  • DNS ASK D.###bucket.com
  • DNS ASK cD##########.FUFpAcIaOATryPsnAadg.readme.io
  • DNS ASK GH####.bitbucket.com
  • DNS ASK ns#######BQwIi.bitbucket.com
  • DNS ASK AP.###bucket.com
  • DNS ASK no###llsnow.com
  • DNS ASK DW#.######vsIsNEeyAcTUCR.readme.io
  • DNS ASK Xu######fV.bitbucket.com
  • DNS ASK Am#########.slKUBMIbVzVyfuuPXZGJ.readme.io
  • DNS ASK ra#.####ubusercontent.com
  • DNS ASK ba##s.edu
  • DNS ASK ap###rror.com
  • DNS ASK dr##box.com
  • DNS ASK ka###wer.com
  • DNS ASK q.###bucket.com
  • DNS ASK mc###########L.KJqIfGKvnTRlrjXBzysH.readme.io
  • DNS ASK me#a.nz