Technical Information
- System Restore (SR)
- %WINDIR%\syswow64\mseeyb.com
- %WINDIR%\msagent\msdfdk.com
- %WINDIR%\syswow64\msext.dll
- %TEMP%\#3#.bat
- %WINDIR%\syswow64\mseeyb.com
- %WINDIR%\msagent\msdfdk.com
- ClassName: 'WSCOMClass' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c %TEMP%\#3#.bat' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c %TEMP%\#3#.bat