Technical Information
- '<SYSTEM32>\wscript.exe' "%WINDIR%\Temp\bepdnvngqt.js"
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 1928
- %WINDIR%\temp\bepdnvngqt.js
- %TEMP%\886990.cvr
- 'tr###micro.com':443
- 'tr###micro.com':443
- DNS ASK tr###micro.com
- DNS ASK bu###edgan.com
- DNS ASK vo###usesa.com