Technical Information
- %TEMP%\a3d90235e113.dll
- %TEMP%\udvfzi.tmp
- '86.##5.252.181':443
- '17#.#0.80.37':443
- '16#.#14.188.34':443
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\A3D902~1.DLL,A <Full path to file>' (with hidden window)
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\A3D902~1.DLL,A <Full path to file>
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\A3D902~1.DLL,ZSg9jBzpAg==