Technical Information
- '%TEMP%\ibm_cnet.exe'
- %WINDIR%\explorer.exe
- firefox.exe
- %TEMP%\ibm_cnet.exe
- %TEMP%\nsw257b.tmp
- %TEMP%\vhseeguvipl.wwv
- %TEMP%\nsh25f9.tmp\fiowin.dll
- %TEMP%\ibm_cnet.exe
- '10#.#75.202.170':80
- 'wb##np.com':80
- 'zh####iepixie.com':80
- http://10#.#75.202.170/520/ChromeSetup.exe
- http://www.wb##np.com/sy22/?DN########################################################################################
- http://www.zh####iepixie.com/sy22/?DN########################################################################################
- DNS ASK wb##np.com
- DNS ASK so##ks.top
- DNS ASK zh####iepixie.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\help.exe'
- '%WINDIR%\syswow64\cmd.exe' del "%TEMP%\IBM_Cnet.exe"