|  | | Infection | Listen | Egg-download | Upload | 
|---|
 | 445 (100%) | 80 (100%) | 1031 (100%) | 80 (96%) | 
 | 
|  | | Processes | Executables | 
|---|
 | MSMSGS.EXE (100%) | ndisrd.sys (100%) DCPROMO.LOG (97%)
 index.dat (97%)
 
 random 6/7/8
 character filename
 | 
 | 
|  | | ...CurrentVersion\InternetSettings (100%) ...InternetSettings\Zones (100%)
 ...Windows\CurrentVersion (100%)
 ...Zones\0 (100%)
 ...Zones\1 (100%)
 ...Zones\2 (100%)
 full list | 
 | 
|  | | 1:2000032 (100%) 1:2000033 (100%)
 1:2001683 (100%)
 1:2466 (100%)
 1:3000000 (100%)
 1:99913 (100%)
 full list | 
 | 
|  | | MD5 | Antivirus labels | Domain | 
|---|
 | a12cab... (64%) df17a6... (26%)
 full list | berbew (100%) berkor (100%)
 doxpar (100%)
 padobot (100%)
 korgo (96%)
 padodor (66%)
 full list | 53bank.com (100%) acrolein-hawk.rubanking.h... (100%)
 alfabank.ru (100%)
 asmworm.com (100%)
 atmacasoft.com (100%)
 barclays.com (100%)
 full list | 
 |