Technical Information
Modifies file system :
Creates the following files:
- %WINDIR%\%USERNAME%.txt
Network activity:
Connects to:
- 'st#######dalen.orcapreview.com':80
TCP:
HTTP POST requests:
- st#######dalen.orcapreview.com/plugins/content/info.php
UDP:
- DNS ASK st#######dalen.orcapreview.com
Miscellaneous:
Searches for the following windows:
- ClassName: 'Shell_TrayWnd' WindowName: ''