Technical Information
- User Account Control (UAC)
- <Current directory>\tt.jpg
- %TEMP%\install.zip
- C:\$loading\word\enginedp.bat
- C:\$loading\word\sun.exe
- C:\$loading\word\xssdll.txt
- <Full path to file>
- from <Full path to file> to %TEMP%\10833751234567931\....\temporaryfile
- '43.##6.38.106':1527
- ClassName: 'CTXOPConntion_Class' WindowName: ''
- 'C:\$loading\word\sun.exe'
- '%WINDIR%\syswow64\cmd.exe' /c C:\$loading\Word\EngineDP.bat' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c C:\$loading\Word\EngineDP.bat