Technical Information
- %TEMP%\aut9b66.tmp
- %TEMP%\1180yepuddv
- %TEMP%\vehthrv\<File name>.exe
- %TEMP%\di9dl71.bat
- %TEMP%\aut9e05.tmp
- %TEMP%\2296yepuddv
- nul
- %HOMEPATH%\favorites\淘宝网.url
- %HOMEPATH%\favorites\链接\淘宝网.url
- %HOMEPATH%\favorites\links\淘宝网.url
- %HOMEPATH%\favorites\京东商城.url
- %HOMEPATH%\favorites\链接\京东商城.url
- %HOMEPATH%\favorites\links\京东商城.url
- %TEMP%\aut9b66.tmp
- %TEMP%\1180yepuddv
- %TEMP%\aut9e05.tmp
- %TEMP%\2296yepuddv
- DNS ASK yu#.#jhyjl.com
- '%TEMP%\vehthrv\<File name>.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\Di9dL71.bat' (with hidden window)
- '<SYSTEM32>\cmd.exe' /c %TEMP%\Di9dL71.bat
- '<SYSTEM32>\ping.exe' -n 1 127.0.0.1