Technical Information
- C:\users\public\9997.exe
- C:\users\public\music\cstqluwe\9.rar
- %ALLUSERSPROFILE%\antikk.dll
- %ALLUSERSPROFILE%\rundll3222.exe
- C:\users\public\music\cstqluwe\antikk.dll
- %ALLUSERSPROFILE%\speedld.exe
- C:\users\public\music\cstqluwe\rundll3222.exe
- C:\users\public\music\cstqluwe\speedld.exe
- %ALLUSERSPROFILE%\xm.xml
- C:\users\public\music\cstqluwe\xm.xml
- '18#.#15.218.150':82
- http://18#.##5.218.150:82/index.php?id### via 18#.#15.218.150
- http://18#.##5.218.150:82/down/77 via 18#.#15.218.150
- http://18#.##5.218.150:82/index.php?id## via 18#.#15.218.150
- http://18#.##5.218.150:82/down/w via 18#.#15.218.150
- 'C:\users\public\9997.exe' e -pcaonima360 C:\\Users\\Public\\Music\\cstqlUwE\\9.rar C:\\Users\\Public\\Music\\cstqlUwE\\
- 'C:\users\public\9997.exe' e -pcaonima360 -y C:\\Users\\Public\\Music\\cstqlUwE\\9.rar %ALLUSERSPROFILE%
- 'C:\users\public\9997.exe' e -pcaonima360 C:\\Users\\Public\\Music\\cstqlUwE\\9.rar C:\\Users\\Public\\Music\\cstqlUwE\\' (with hidden window)
- 'C:\users\public\9997.exe' e -pcaonima360 -y C:\\Users\\Public\\Music\\cstqlUwE\\9.rar %ALLUSERSPROFILE%' (with hidden window)