Technical Information
- '%TEMP%\x0x0x0x.exe'
- '%TEMP%\x0x0x0x.exe' (downloaded from the Internet)
- '<SYSTEM32>\rundll32.exe' dfdts.dll,DfdGetDefaultPolicyAndSMART
- %TEMP%\x0x0x0x.exe
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\ok[1].exe
- '93.#25.87.4':80
- 93.#25.87.4/zimbra/img/ok.exe
- ClassName: '' WindowName: '(null)'