Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ab1cbd9f7f4a49bf0a66ffb2e881b83a' = '"%TEMP%\Google Chrome. .exe" ..'
- [<HKLM>\Software\Microsoft\Windows\CurrentVersion\Run] 'ab1cbd9f7f4a49bf0a66ffb2e881b83a' = '"%TEMP%\Google Chrome. .exe" ..'
- %APPDATA%\microsoft\windows\start menu\programs\startup\ab1cbd9f7f4a49bf0a66ffb2e881b83a.exe
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "%TEMP%\Google Chrome. .exe" "Google Chrome. .exe" ENABLE
- %TEMP%\google chrome. .exe
- 'dr###.ddns.net':999
- DNS ASK dr###.ddns.net
- '%TEMP%\google chrome. .exe'
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "%TEMP%\Google Chrome. .exe" "Google Chrome. .exe" ENABLE' (with hidden window)