Technical Information
- %TEMP%\gj2sahwerlyuiqk
- %TEMP%\gj2sahwerlyuiqk.dll
- 'er###.#urfstation.at':80
- http://ge##tech.at/voqq3jes
- http://cl###fmalw.ws/0lq45
- http://ba#######story.portalstream.net/9654ntqg
- http://cy#####hop.web.fc2.com/lda4fj7a
- DNS ASK ge##tech.at
- DNS ASK er###.#urfstation.at
- DNS ASK cl###fmalw.ws
- DNS ASK sp###.bnet.at
- DNS ASK ba#######story.portalstream.net
- DNS ASK cy#####hop.web.fc2.com
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\GJ2SAH~1.DLL,qwerty 323