Technical Information
- %APPDATA%\grghooh.exe (downloaded from the Internet)
- %APPDATA%\bsbklr.exe (downloaded from the Internet)
- %APPDATA%\isnvfrve.exe (downloaded from the Internet)
- %APPDATA%\tvnkvb.exe (downloaded from the Internet)
- %APPDATA%\arfkehv.exe (downloaded from the Internet)
- %APPDATA%\minvevoec.exe (downloaded from the Internet)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\bsbklr[1].exe
- %APPDATA%\grghooh.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\grghooh[1].exe
- %APPDATA%\isnvfrve.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\isnvfrve[1].exe
- %APPDATA%\bsbklr.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\arfkehv[1].exe
- %APPDATA%\tvnkvb.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\tvnkvb[1].exe
- %APPDATA%\minvevoec.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\minvevoec[1].exe
- %APPDATA%\arfkehv.exe
- 'dl.##opbox.com':80
- 'localhost':1037
- dl.##opbox.com/u/34881322/grghooh.exe
- dl.##opbox.com/u/34881322/bsbklr.exe
- dl.##opbox.com/u/34881322/isnvfrve.exe
- dl.##opbox.com/u/34881322/tvnkvb.exe
- dl.##opbox.com/u/34881322/arfkehv.exe
- dl.##opbox.com/u/34881322/minvevoec.exe
- DNS ASK dl.##opbox.com