Technical Information
- %WINDIR%\explorer.exe
- jjj.exe
- ClassName: 'gdkWindowToplevel', WindowName: ''
- %TEMP%\hhhhhhh.exe
- %TEMP%\jjj.exe
- %TEMP%\u16event.dat
- %APPDATA%\addons.dat
- %TEMP%\u16event.dat
- %TEMP%\hhhhhhh.exe
- 'ft#.#rivehq.com':21
- DNS ASK ft#.#rivehq.com
- '%TEMP%\hhhhhhh.exe'
- '%TEMP%\jjj.exe'
- '%WINDIR%\syswow64\cmd.exe' /c timeout 5 && del %TEMP%\hhhhhhh.exe' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c timeout 5 && del %TEMP%\hhhhhhh.exe
- '%WINDIR%\syswow64\timeout.exe' 5