Technical Information
- '<Current directory>\temp\<File name>.exe' "<Current directory>\temp/privoxy.conf"
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyOverride' = 'localhost;127.*;10.*;172.16.*;172.17.*;172.18.*;172.19.*;172.20.*;172.21.*;172.22.*;172.23.*;172.24.*;172...
- [<HKLM>\SYSTEM\ControlSet001\Hardware Profiles\0001\Software\Microsoft\windows\CurrentVersion\Internet Settings] 'ProxyEnable' = '00000001'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyEnable' = '00000001'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyServer' = '127.0.0.1:1080'
- <Current directory>\temp\privoxy.conf
- <Current directory>\temp\shadowsocks_2017-08.log
- <Current directory>\temp\<File name>.exe
- <Current directory>\temp\mgwz.dll
- 'localhost':1080
- DNS ASK ra#.####ubusercontent.com
- ClassName: 'Shell_TrayWnd' WindowName: ''