Tepfer.BFVY is an infostealer that usually spreads via spam Emails with malicious attachments. Upon execution they mine the victim machine for vital inforamtion, they download and execute different trojan variants and execute them on the victim machine Network Activity It attempts to connect to the following remote servers: - dharmaking.net:80 (64.94.1xxxxxx)
We observed the following DNS query/queries: |