Technical Information
- %WINDIR%\explorer.exe
- qetcktzno.exe
- %TEMP%\nspf798.tmp
- %TEMP%\dfgaonvs.fo
- %TEMP%\kjermnr.ad
- %TEMP%\qetcktzno.exe
- DNS ASK ti###vector.ru
- DNS ASK fi#####utomotive.com
- '%TEMP%\qetcktzno.exe' %TEMP%\kjermnr.ad
- '%TEMP%\qetcktzno.exe'
- '%WINDIR%\syswow64\netstat.exe'