Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\RunOnce] 'versele' = '%HOMEPATH%\GENNEMTRAW\UNVENIABL.vbs'
- unveniabl.exe
- %HOMEPATH%\gennemtraw\unveniabl.exe
- %HOMEPATH%\gennemtraw\unveniabl.vbs
- %APPDATA%\cosp\dos.dt
- 'fu##676.com':2266
- 'co##ta66.gq':2266
- 'cd#.#ilesend.jp':443
- DNS ASK cd#.#ilesend.jp
- DNS ASK fu##676.com
- DNS ASK co##ta66.gq
- DNS ASK co##ta67.ga
- DNS ASK co##ta68.ga
- DNS ASK co##ta69.ga
- DNS ASK co##ta70.ga
- '%HOMEPATH%\gennemtraw\unveniabl.exe'