Technical Information
- ddvc.exe
- %TEMP%\xcvndfg.exe
- %TEMP%\ddlsho.exe
- %TEMP%\ddvc.exe
- %WINDIR%\temp\kloe2lts.exe
- %WINDIR%\temp\ucvc2yuw.inf
- 'du###duran.ug':80
- http://du###forme.ug/az1.exe
- http://ff##dsv.ug/rac1.exe
- http://ff##scs.ug/ds1.exe
- http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
- DNS ASK du###forme.ug
- DNS ASK drive.google.com
- DNS ASK ff##dsv.ug
- DNS ASK ff##scs.ug
- DNS ASK microsoft.com
- DNS ASK do#########ocs.googleusercontent.com
- DNS ASK du###duran.ug
- '%TEMP%\xcvndfg.exe'
- '%TEMP%\ddlsho.exe'
- '%TEMP%\ddvc.exe'
- '%WINDIR%\syswow64\cmstp.exe' /au %WINDIR%\temp\ucvc2yuw.inf