Technical Information
- vuewl.exe
- %LOCALAPPDATA%\google\chrome\user data\default\login data
- %APPDATA%\opera software\opera stable\login data
- %LOCALAPPDATA%\microsoft\edge\user data\default\login data
- %TEMP%\nsubaf5.tmp
- %TEMP%\lsopstotdrr.woo
- %TEMP%\rimhbdfvv.imk
- %TEMP%\vuewl.exe
- 'ch####p.dyndns.org':80
- http://ch####p.dyndns.org/
- DNS ASK ch####p.dyndns.org
- '%TEMP%\vuewl.exe' %TEMP%\rimhbdfvv.imk
- '%TEMP%\vuewl.exe'