Storm keeps coming (4th variant)
They just keep coming...this one is very similar to the 3rd variant we reviewed, but some changes are apparent
1) Hash: 1f362ad74d62262bff6bcb1d078cbf7d
2) Aside from yet again changing the domain and binary, the hidden files written upon execution are as follows
Helios Rootkit Detector
Scanning File System For Hidden Files
Scanning Drive C
1...
