Technical Information
- %HOMEPATH%\Start Menu\programs\startup\rjjlcjwjw8.lnk
- %ALLUSERSPROFILE%\Application Data\8wjwjcljjr.plz
- %ALLUSERSPROFILE%\Application Data\rjjlcjwjw8.pff
- '37.##9.53.199':80
- '37.##9.53.169':443
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\8wjwjcljjr.plz,GL300
- '%WINDIR%\regedit.exe' -s %ALLUSERSPROFILE%\Application Data\rjjlcjwjw8.reg