Technical Information
- '%APPDATA%\gvmhgvf6hopd.exe'
- gvmhgvf6hopd.exe
- %APPDATA%\gvmhgvf6hopd.exe
- http://si###masadao.tk/co/ok.exe
- DNS ASK si###masadao.tk
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\microsoft.net\framework\v2.0.50727\dw20.exe' -x -s 556