Technical Information
- %ALLUSERSPROFILE%\a174c1ef10e2077451f5b6dda83242a1
- %ALLUSERSPROFILE%\1321ba6d1f\bdif.exe
- '21#.#.117.52':80
- '%ALLUSERSPROFILE%\1321ba6d1f\bdif.exe'
- '%WINDIR%\syswow64\cmd.exe' /C SCHTASKS /Create /SC HOURLY /MO 1 /TN a174c1ef10e2077451f5b6dda83242a1 /TR %ALLUSERSPROFILE%\1321ba6d1f\bdif.exe
- '%WINDIR%\syswow64\reg.exe' ADD "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" /f /v Startup /t REG_SZ /d %ALLUSERSPROFILE%\1321ba6d1f
- '%WINDIR%\syswow64\schtasks.exe' /Create /SC HOURLY /MO 1 /TN a174c1ef10e2077451f5b6dda83242a1 /TR %ALLUSERSPROFILE%\1321ba6d1f\bdif.exe