Technical Information
- '%TEMP%\ivnakc.exe' (downloaded from the Internet)
- '%TEMP%\ivnakc.exe'
- '<SYSTEM32>\ping.exe' 127.0.0.1
- '<SYSTEM32>\cmd.exe' /c %TEMP%\ltvgapc.bat
- '<SYSTEM32>\cmd.exe' /c %TEMP%\fiiuqmc.bat
- '%TEMP%\kqefgc.exe'
- %TEMP%\ivnakc.exe
- %TEMP%\savfko.bat
- %TEMP%\ltvgapc.bat
- %TEMP%\kqefgc.exe
- %TEMP%\cgrocp.bat
- %TEMP%\fiiuqmc.bat
- %TEMP%\nfetxmgo.bat
- %TEMP%\ucsndcwv.bat
- from %TEMP%\savfko.bat to %TEMP%\nfetxmgo.bat
- from %TEMP%\cgrocp.bat to %TEMP%\ucsndcwv.bat
- 'www.10##u.info':80
- 'localhost':1036
- http://www.10##u.info/7ff.exe
- DNS ASK www.10##u.info