Technical Information
- %TEMP%\0alshov3tq
- %TEMP%\0alshov3tq.dll
- http://www.me##.metro.ru/uumr65
- http://www.op##.#ebserwer.pl/hpeqoqgg
- http://my.#t21.ru/ecm04dx
- http://ge##tech.at/88bq4
- DNS ASK me##.metro.ru
- DNS ASK op##.#ebserwer.pl
- DNS ASK my.#t21.ru
- DNS ASK ti###obuymlw.in
- DNS ASK ge##tech.at
- DNS ASK er###.#urfstation.at
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\0ALSHO~1.DLL,qwerty 323