Technical Information
- [<HKLM>\System\CurrentControlSet\Services\RpdcSTtlflPZux.dll] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\RpdcSTtlflPZux.dll] 'ImagePath' = '<SYSTEM32>\regsvr32.exe "<SYSTEM32>\BcQhgCQSGFjxCqT\RpdcSTtlflPZux.dll"'
- 'RpdcSTtlflPZux.dll' <SYSTEM32>\regsvr32.exe "<SYSTEM32>\BcQhgCQSGFjxCqT\RpdcSTtlflPZux.dll"
- from <Full path to file> to <SYSTEM32>\bcqhgcqsgfjxcqt\rpdcsttlflpzux.dll
- '17#.#2.82.196':8080
- '15#.#9.202.34':443
- '17#.#39.37.178':8080
- '89.#9.244.7':443
- '17#.#2.82.196':8080
- '15#.#9.202.34':443
- '<SYSTEM32>\regsvr32.exe' "<SYSTEM32>\BcQhgCQSGFjxCqT\RpdcSTtlflPZux.dll"