Technical Information
- %WINDIR%\syswow64\verclsid.exe
- C:\gfggfk.ini
- C:\gfggfk.ini
- <Full path to file>
- 'fi##.#f00001.com':1714
- 'fi##.#f00001.com':1219
- http://FI##.##00001.COM:1714/CFBED/CFBED.txt?47####
- http://FI##.##00001.COM:1714/CFBED/CFBED.txt?48####
- http://FI##.##00001.COM:1714/CFBED/CFBEDpuppet.Txt?48####
- DNS ASK fi##.#f00001.com
- '%WINDIR%\syswow64\verclsid.exe'