Technical Information
- '%WINDIR%\explorer.exe' /c, %TEMP%\64Ime8l.js
- %TEMP%\64ime8l.js
- 'dj#####cacq.88sckozj.ml':443
- DNS ASK dj#####cacq.88sckozj.ml
- '<SYSTEM32>\wscript.exe' "%TEMP%\64Ime8l.js"
- '<SYSTEM32>\wscript.exe' "%TEMP%\64Ime8l.js"' (with hidden window)
- '<SYSTEM32>\cmd.exe' /S /D /c" sET/p 6l0Oivs="%IVE:XRMGZO=%%Fxj7q9L:TTIFB=/%" 0<nul 1>%TEMP%\64Ime8l.js 2>&1"
- '<SYSTEM32>\cmd.exe' /S /D /c" CAll %KME:NRMXJ=% %TEMP%\64Ime8l.js 2>&1"
- '<SYSTEM32>\cmd.exe' /S /D /c" exiT"