Technical Information
- <SYSTEM32>\tasks\èîîñãû³æ
- %LOCALAPPDATA%\<File name>.exe
- <SYSTEM32>\tasks\èîîñãû³æ
- 'uy##.#####n-beijing.aliyuncs.com':443
- '43.##9.183.203':8081
- 'uy##.#####n-beijing.aliyuncs.com':443
- DNS ASK uy##.#####n-beijing.aliyuncs.com
- '%LOCALAPPDATA%\<File name>.exe'
- '%LOCALAPPDATA%\<File name>.exe' ' (with hidden window)