Technical Information
To ensure autorun and distribution:
Modifies the following registry keys:
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run] 'kxetray.exe' = '%ALLUSERSPROFILE%\ЎёїЄКјЎ№ІЛµҐ\ЗїБ¦Р¶ФШµзДФЙПµДИнјю.lnk'
Network activity:
Connects to:
- 'qq#####9171.gicp.net':2012
UDP:
- DNS ASK qq#####9171.gicp.net