Technical Information
- %HOMEPATH%\Start Menu\Programs\Startup\19431.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\77139.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\44846.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\25417.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\83124.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\94705.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\88719.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\96568.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\82734.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\50441.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\56427.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\71153.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\38860.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\57709.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\73413.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\41121.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\55847.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\44266.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\11973.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\69681.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\23554.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\31403.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\75276.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\42983.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\81262.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\95988.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\63695.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\18149.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\46318.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\71733.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\65747.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\99018.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\81451.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\31592.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\78603.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\55051.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\88612.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\39050.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\93329.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\19323.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\99605.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\58877.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\89307.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\71740.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\97155.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\32874.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\90582.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\58290.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\79589.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\63587.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\46021.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\36303.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\12163.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\52304.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\20011.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\29540.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\18357.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\33083.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\84508.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\68216.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\82942.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\50650.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\99233.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\44664.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\70079.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\96385.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\34648.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\17082.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\31808.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\10509.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\94914.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\19640.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\81079.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\54773.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\69499.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\37206.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\48787.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\56635.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\71361.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\42801.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\16494.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\31220.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\88928.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\64093.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\59673.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\42106.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\82247.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\30822.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\19532.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\34258.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\54962.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\79399.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\94125.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\61832.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\95103.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\77536.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\10111.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\80682.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\86667.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\54375.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\69101.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\31801.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\14234.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\28960.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\80384.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\43381.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\25815.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\98248.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\48092.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\30525.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\17966.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\72591.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\36183.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\93890.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\99876.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\82310.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\97035.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\61598.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\84172.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\98898.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\34313.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\76324.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\44031.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\58757.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\42169.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\98014.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\30588.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\13021.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\50024.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\57873.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\72598.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\85455.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\11746.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\69453.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\59735.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\53162.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\20870.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\29313.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\15471.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\42068.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\49916.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\95065.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\97616.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\47757.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\62482.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\90354.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\24494.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\18508.vbs
- %HOMEPATH%\Start Menu\Programs\Startup\41663.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\93492.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\93790.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\74353.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\72201.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\23320.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\95753.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\60620.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\73179.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\87905.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\55612.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\28327.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\12326.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\84760.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\49626.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\86035.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\71903.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\62185.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\59148.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\35109.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\22550.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\70539.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\91548.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\72112.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\62394.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\51697.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\41979.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\24413.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\96846.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\34131.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\91838.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\74272.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\60828.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\91062.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\11077.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\23933.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\29332.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\53769.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\75067.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\62501.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\36094.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\70249.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\35116.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\96359.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\91649.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\79090.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\64554.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\31870.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\97426.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\56010.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\76722.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\59155.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\49437.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\23718.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\68866.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\51299.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\33733.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\96151.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\20877.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\28725.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\94288.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\26275.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\81142.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\48850.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\32261.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\13419.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\43842.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\56698.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\98999.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\81432.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\54147.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\29413.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\66713.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\39429.lnk
- %TEMP%\svchost.exe 2780,<Full path to virus>
- %WINDIR%\Microsoft.NET\Framework\v4.0.30319\cvtres.exe /NOLOGO /READONLY /MACHINE:IX86 "/OUT:"%TEMP%\RES3.tmp"" ""%TEMP%\vbc2.tmp""
- %WINDIR%\Microsoft.NET\Framework\v4.0.30319\vbc.exe /noconfig @"%TEMP%\2y4cktb2.cmdline"
- %TEMP%\RES3.tmp
- %TEMP%\vbc2.tmp
- %WINDIR%\WMSys351.exe
- %TEMP%\svchost.exe
- %TEMP%\2y4cktb2.cmdline
- %TEMP%\2y4cktb2.0.vb
- %TEMP%\vbc1.tmp
- %TEMP%\2y4cktb2.out
- %HOMEPATH%\Start Menu\Programs\Startup\18508.vbs
- %HOMEPATH%\Start Menu\Programs\Startup\41663.lnk
- %WINDIR%\WMSys351.exe
- %TEMP%\2y4cktb2.cmdline
- %TEMP%\2y4cktb2.out
- %TEMP%\2y4cktb2.0.vb
- %TEMP%\RES3.tmp
- %TEMP%\vbc2.tmp
- '20#.#6.232.182':80
- 20#.#6.232.182/
- DNS ASK www.microsoft.com