Technical Information
- '' (downloaded from the Internet)
- 'C:\users\public\vbc.exe'
- %WINDIR%\explorer.exe
- vbc.exe
- C:\users\public\vbc.exe
- C:\users\public\vbc.exe
- 'ub###ormal.com':80
- 'to###roup.com':80
- 'pa###estmi.com':80
- http://www.ma#####homeoffers.com/o8na/?nN########################################################################################
- DNS ASK ub###ormal.com
- DNS ASK to###roup.com
- DNS ASK os###m2020.com
- DNS ASK pa###estmi.com
- DNS ASK ma#####homeoffers.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\wininit.exe'
- '%WINDIR%\syswow64\cmd.exe' del "C:\Users\Public\vbc.exe"