Technical Information
- '%ALLUSERSPROFILE%\Application Data\F4D55F620025C89C000AB8462830AC72\F4D55F620025C89C000AB8462830AC72.exe' -d "<Full path to virus>"
- iexplore.exe
- %ALLUSERSPROFILE%\Application Data\F4D55F620025C89C000AB8462830AC72\F4D55F620025C89C000AB8462830AC72
- %ALLUSERSPROFILE%\Application Data\F4D55F620025C89C000AB8462830AC72\F4D55F620025C89C000AB8462830AC72.exe
- '78.##9.105.142':80
- '95.##8.172.91':80
- http://78.##9.105.142/api/stats/install/?&a###############################
- http://95.##8.172.91/api/urls/?&a##########
- ClassName: 'Shell_TrayWnd' WindowName: ''