Technical Information
- %HOMEPATH%\start menu\programs\startup\<File name>.lnk
- %TEMP%\72149b69c\images\progressbar.gif
- %TEMP%\72149b69c\images\loader.gif
- %ALLUSERSPROFILE%\application data\{5d7ea8fe-73fc-3dd5-5d7e-ea8fe73fa3f9}\<File name>.exe
- %ALLUSERSPROFILE%\application data\{5d7ea8fe-73fc-3dd5-5d7e-ea8fe73fa3f9}\<File name>.dat
- %HOMEPATH%\desktop\<File name>.lnk
- %TEMP%\72149b69c\temp\<File name>.exe
- DNS ASK r1.##sties.org
- DNS ASK c1.###iginal.org
- DNS ASK c2.##berty.link
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''