Technical Information
- %WINDIR%\tasks\bidaily synchronize task.job
- %ALLUSERSPROFILE%\application data\{19291df4-2e44-f77b-1929-91df42e477d0}\<File name>.exe
- %ALLUSERSPROFILE%\application data\{19291df4-2e44-f77b-1929-91df42e477d0}\<File name>.dat
- DNS ASK cu###me.info
- DNS ASK fu####onreader.com
- DNS ASK to###itgold.org