Technical Information
- %TEMP%\5704 (downloaded from the Internet) -affid=135356
- %TEMP%\2852 (downloaded from the Internet) -affid=135356
- %TEMP%\explorer.exe /X
- %TEMP%\5704
- %TEMP%\2852
- %TEMP%\explorer.exe
- %TEMP%\explorer.exe
- 'ge#.##itesmoke.com':80
- ge#.##itesmoke.com/dl/tools/sono_weatherbug_146833_120310233925.exe
- ge#.##itesmoke.com/dl/tools/sono_shoptowin.exe
- DNS ASK ge#.##itesmoke.com
- '<Private IP address>':1036