Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'icq' = '%APPDATA%\Microsoft\istvfbbi\jtujrsst.exe'
- %WINDIR%\explorer.exe
- %APPDATA%\microsoft\istvfbbi\jtujrsst.exe
- %APPDATA%\microsoft\istvfbbi\istvfbbi
- %APPDATA%\microsoft\istvfbbi\jtujrsst.exe
- %APPDATA%\microsoft\istvfbbi\istvfbbi
- 'microsoft.com':443
- 'visualstudio.microsoft.com':443
- 'vi####studio.com':443
- http://www.adobe.com/
- http://le###hov.bit/15022018/
- DNS ASK go.microsoft.com
- DNS ASK support.microsoft.com
- DNS ASK adobe.com
- DNS ASK microsoft.com
- DNS ASK msdn.microsoft.com
- DNS ASK visualstudio.microsoft.com
- DNS ASK vi####studio.com
- '%WINDIR%\explorer.exe'