Technical Information
- %APPDATA%\microsoft\windows\start menu\programs\startup\<File name>.exe
- 'su#####entodepago.click':443
- 'microsoft.com':80
- 'se######sdefender.mooo.com':2029
- http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
- 'su#####entodepago.click':443
- 'se######sdefender.mooo.com':2029
- DNS ASK su#####entodepago.click
- DNS ASK microsoft.com
- DNS ASK se######sdefender.mooo.com