
Source: C:\Windows \SysWOW64\ rundll32.e xeĬode function: 1_2_04790E 53 _memset ,_snprint f,_snprin tf,_snpri ntf,HttpOp enRequestA ,HttpSendR equestA,Ht tpQueryInf oA,Interne tCloseHand le,Interne tCloseHand le,Interne tQueryData Available, InternetRe adFile,Int ernetClose Handle,Int ernetClose Handle,

Internet Provider seen in connection with other malwareĪSN Name: CNNIC-ALIB ABA-US-NET -APAlibaba USTechnolo g圜oLtdC C NNIC-ALIBA BA-US-NET- APAlibabaU STechnolog 圜oLtdCĬontains functionality to download additional files from the internet

IP address seen in connection with other malware
