Technical Information
- %APPDATA%\microsoft\windows\start menu\programs\startup\bitb3dc.tmp
- %WINDIR%\syswow64\nslookup.exe
- %TEMP%\nsg84ed.tmp
- %TEMP%\isss.rtf
- %TEMP%\ult_icp.png
- %TEMP%\aaa.dll
- %TEMP%\nsh8675.tmp\system.dll
- %PROGRAMDATA%\zkgzol.png
- %APPDATA%\data\logs.dat
- %APPDATA%\microsoft\windows\start menu\programs\startup\bitb3dc.tmp
- 'xy###5.spdns.de':7894
- DNS ASK xy###5.spdns.de
- '%WINDIR%\syswow64\nslookup.exe'