Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '<File name>' = '<Full path to file>'
- User Account Control (UAC)
- %APPDATA%\proxy.exe
- %LOCALAPPDATA%\google\chrome\user data\default\cookies.db
- %LOCALAPPDATA%\google\chrome\user data\default\cookies.db
- http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/02FAF3E291435468607857694DF5E45B68851868.crt
- DNS ASK ic###azip.com
- DNS ASK di###rdapp.com
- '%APPDATA%\proxy.exe'
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "%APPDATA%\proxy.exe"