Technical Information
- C:\merda.exe
- C:\merda.exe (downloaded from the Internet)
- C:\merda.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ZIP_Repair[1].zip
- 'www.di####ternals.com':80
- 'localhost':1035
- www.di####ternals.com/files/ZIP_Repair.zip
- DNS ASK www.di####ternals.com
- '<Private IP address>':1036