Technical Information
- '%TEMP%\ibm_centos.exe'
- %TEMP%\ibm_centos.exe
- %TEMP%\nsac8db.tmp
- %APPDATA%\microsoft\windows\start menu\encolors\forbedringens\lighterens\skatteberegnings.eff
- %APPDATA%\microsoft\windows\start menu\encolors\forbedringens\perforeringens\jelinas\affdende.smk
- %APPDATA%\microsoft\windows\start menu\encolors\forbedringens\perforeringens\jelinas\morgenfruernes.teg
- %TEMP%\nsace0a.tmp\system.dll
- '19#.#.26.168':80
- http://19#.#.26.168/91/winBx.exe
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding