Technical Information
- %APPDATA%\Microsoft\windows\Start Menu\programs\startup\rdflcl4.lnk
- %ProgramFiles%\4lclfdr.dss
- %TEMP%\4lclfdr.dss
- %ProgramFiles%\rdflcl4.bxx
- '19#.#15.114.209':80
- '37.##9.53.204':443
- '%WINDIR%\syswow64\rundll32.exe' %ProgramFiles%\4lclfdr.dss,FFZ0
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\4lclfdr.dss,FFZ4