Technical Information
- '' (downloaded from the Internet)
- 'C:\users\public\vbc.exe'
- %WINDIR%\explorer.exe
- vbc.exe
- C:\users\public\vbc.exe
- C:\users\public\vbc.exe
- '18.##4.54.219':80
- 'he####yfifties.com':80
- 'ac##r.com':80
- 'wm###uezy.com':80
- 'th####yfriendly.com':80
- 'jo###ono.com':80
- 'de####nwheeeles.com':80
- 'ri##vd.com':80
- http://www.cu#####erstories.com/bw82/?1b####################################################################################
- DNS ASK ch####ubser.digital
- DNS ASK he####yfifties.com
- DNS ASK ac##r.com
- DNS ASK wm###uezy.com
- DNS ASK th####yfriendly.com
- DNS ASK jo###ono.com
- DNS ASK de####nwheeeles.com
- DNS ASK ri##vd.com
- DNS ASK cu#####erstories.com
- DNS ASK yj##s.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\wininit.exe'
- '%WINDIR%\syswow64\cmd.exe' del "C:\Users\Public\vbc.exe"