Technical Information
- '<SYSTEM32>\taskkill.exe' /IM BBTalk.exe /F
- '<SYSTEM32>\taskkill.exe' /IM pbid.exe /F
- '<SYSTEM32>\taskkill.exe' /IM ggdllhost.exe /F
- '<SYSTEM32>\taskkill.exe' /IM PointBlank.exe /F
- '<SYSTEM32>\cmd.exe' /c TASKKILL /IM PointBlank.exe /F
- '<SYSTEM32>\cmd.exe' /c TASKKILL /IM pbid.exe /F
- '<SYSTEM32>\cmd.exe' /c TASKKILL /IM ggdllhost.exe /F
- '<SYSTEM32>\cmd.exe' /c TASKKILL /IM BBTalk.exe /F
- %TEMP%\~DF3DA7.tmp
- <DRIVERS>\etc\hosts
- 'se#####01802017501.club':80
- 'localhost':1038
- http://se#####01802017501.club/checking.php
- DNS ASK se#####01802017501.club
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''