Technical Information
- '91.##.241.54':80
- 'to#s.is':443
- http://91.##.241.54/5444/mhm/HTMLieChromeBrowserhistoryCleaner.dOC
- 'to#s.is':443
- DNS ASK to#s.is
- '%ProgramFiles%\microsoft office\office14\winword.exe' -Embedding
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding