Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyServer' = ''
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyOverride' = 'localhost;127.*;10.*;172.16.*;172.17.*;172.18.*;172.19.*;172.20.*;172.21.*;172.22.*;172.23.*;172.24.*;172...
- <Current directory>\temp\<File name>.exe
- <Current directory>\temp\mgwz.dll
- <Current directory>\temp\pac.txt
- <Current directory>\temp\privoxy.conf
- <Current directory>\temp\shadowsocks_2018-05.log
- 'localhost':1080
- DNS ASK ra#.####ubusercontent.com
- '<Current directory>\temp\<File name>.exe' "<Current directory>\temp/privoxy.conf"