Technical Information
- %TEMP%\jjefg0rt7yq.dll
- http://ax##dha.net/6rbjg
- http://as###buffet.ca/wa18rel7
- http://bu##cher.co/upm89
- DNS ASK ax##dha.net
- DNS ASK al####drkireev.ru
- DNS ASK as###buffet.ca
- DNS ASK bu##cher.co
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\JJEFG0~1.DLL,0001