Technical Information
- %HOMEPATH%\Start Menu\Programs\Startup\Driver.exe
- %TEMP%\aut1.tmp
- %TEMP%\Driver.exe
- %TEMP%\aut2.tmp
- %TEMP%\folder.pdf
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- 'ap#.###o-updater.online':80
- http://ap#.###o-updater.online/run
- DNS ASK ap#.###o-updater.online
- '%TEMP%\Driver.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\folder.pdf
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\shell32.dll,OpenAs_RunDLL %TEMP%\folder.pdf