C:\Documents and Settings\LocalService\NIMMEwsg\jaQEcQMQ
<Current directory>\aWcw.ico
C:\RCX3.tmp
<Current directory>\lgYu.exe
<Current directory>\rOwI.ico
C:\RCX4.tmp
<Current directory>\qgsc.exe
<Current directory>\LosM.ico
C:\RCX2.tmp
<Current directory>\cUMo.exe
<Current directory>\ZEwE.ico
Deletes the following files:
<Current directory>\gUAw.exe
<Current directory>\hcUM.ico
<Current directory>\qEcY.ico
<Current directory>\BkwI.ico
<Current directory>\ZYoa.exe
<Current directory>\koQe.exe
<Current directory>\nIEI.exe
<Current directory>\Pqsk.ico
<Current directory>\rmow.ico
<Current directory>\iYQM.ico
<Current directory>\iYci.exe
<Current directory>\SYYi.exe
<Current directory>\qgsc.exe
<Current directory>\LosM.ico
<Current directory>\zMkQ.ico
%TEMP%\ZyAoUAMU.bat
<Current directory>\fAIE.exe
<Current directory>\cUMo.exe
<Current directory>\HooS.exe
<Current directory>\rOwI.ico
<Current directory>\aWcw.ico
<Current directory>\ZEwE.ico
<Current directory>\lgYu.exe
Moves the following files:
from C:\RCX8.tmp to <Current directory>\gUAw.exe
from C:\RCX7.tmp to <Current directory>\ZYoa.exe
from C:\RCX9.tmp to <Current directory>\koQe.exe
from C:\RCXB.tmp to <Current directory>\nIEI.exe
from C:\RCXA.tmp to <Current directory>\iYci.exe
from C:\RCX6.tmp to <Current directory>\SYYi.exe
from C:\RCX2.tmp to <Current directory>\qgsc.exe
from C:\RCX1.tmp to <Current directory>\fAIE.exe
from C:\RCX3.tmp to <Current directory>\cUMo.exe
from C:\RCX5.tmp to <Current directory>\HooS.exe
from C:\RCX4.tmp to <Current directory>\lgYu.exe
Network activity:
Connects to:
'bl##k.io':443
UDP:
DNS ASK google.com
DNS ASK bl##k.io
Miscellaneous:
Searches for the following windows:
ClassName: '' WindowName: 'Microsoft Windows'
ClassName: '' WindowName: 'AcIcUcAM.exe'
ClassName: 'Indicator' WindowName: ''
Download Dr.Web for Android
Free three-month trial
All protection features available
Renew your trial license in AppGallery/on Google Pay
By continuing to use this website, you are consenting to Doctor Web’s use of cookies and other technologies related to the collection of visitor statistics. Learn more