Technical Information
- User Account Control (UAC)
- '<SYSTEM32>\regsvr32.exe' /s %WINDIR%\DpvvH61IaxHJ833OSQo3Vw.dll
- %WINDIR%\DpvvH61IaxHJ833OSQo3Vw.dll
- '19#.#5.46.102':80
- 'wp#d':80
- http://19#.#5.46.102/crypted7.zip
- http://11#.#11.111.1/wpad.dat via wp#d
- DNS ASK wp#d