Technical Information
- %HOMEPATH%\Start Menu\Programs\Startup\Explorer.lnk
- '%APPDATA%\svchost.exe'
- %APPDATA%\svchost.exe
- 'so#####nfsdhxccwo.biz':80
- 'yw###nindp.su':80
- 'he####oiakxkr.xyz':80
- 'xh##jxpd.su':80
- 'gt###iifdx.pw':80
- '21#.#2.199.244':80
- '14#.#02.52.215':80
- 'dh####kjwndj.biz':80
- 'ij####pwktjyq.click':80
- http://so#####nfsdhxccwo.biz/apache_handler.php
- http://yw###nindp.su/apache_handler.php
- http://he####oiakxkr.xyz/apache_handler.php
- http://xh##jxpd.su/apache_handler.php
- http://gt###iifdx.pw/apache_handler.php
- http://21#.#2.199.244/apache_handler.php
- http://14#.#02.52.215/apache_handler.php
- http://dh####kjwndj.biz/apache_handler.php
- http://ij####pwktjyq.click/apache_handler.php
- DNS ASK so#####nfsdhxccwo.biz
- DNS ASK xh##jxpd.su
- DNS ASK he####oiakxkr.xyz
- DNS ASK yw###nindp.su
- DNS ASK ij####pwktjyq.click
- DNS ASK dh####kjwndj.biz
- DNS ASK gt###iifdx.pw