Technical Information
- %WINDIR%\explorer.exe
- iexplore.exe
- iexplore.exe process, wininet.dll module
- %TEMP%\nsh59c4.tmp
- %TEMP%\ag5pig3tpwmuxgs0
- %TEMP%\dpcnzfhcug
- %TEMP%\rrmwxfuv.exe
- %TEMP%\rrmwxfuv.exe
- '%TEMP%\rrmwxfuv.exe' %TEMP%\dpcnzfhcug
- '%WINDIR%\syswow64\napstat.exe'
- '%WINDIR%\syswow64\cmd.exe' del "%TEMP%\rrmwxfuv.exe"