Technical Information
- %APPDATA%\microsoft\windows\start menu\programs\startup\desde.vbs
- %WINDIR%\microsoft.net\framework64\v4.0.30319\installutil.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\installutil.exe
- %TEMP%\content\428-1284-<File name>.exe-01-43-44-920.dump
- %TEMP%\content\428-1284-<File name>.exe-01-43-45-406.dump
- %TEMP%\content\428-1284-<File name>.exe-01-43-45-421.dump
- %TEMP%\11223.exe
- %TEMP%\content\2612-1564-11223.exe-01-43-47-412.dump
- %TEMP%\content\2612-1564-11223.exe-01-43-47-885.dump
- %TEMP%\content\2612-1564-11223.exe-01-43-47-898.dump
- %APPDATA%\desde.exe
- DNS ASK cl####lare-dns.com
- '%TEMP%\11223.exe'
- '%WINDIR%\microsoft.net\framework64\v4.0.30319\installutil.exe'