Technical Information
- %WINDIR%\tasks\openvpn-gui.job
- <SYSTEM32>\tasks\openvpn-gui
- %TEMP%\crap.dll
- '<SYSTEM32>\notepad.exe'
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 304
- <SYSTEM32>\notepad.exe
- %TEMP%\crap.dll
- %TEMP%\3ca0001.jpg
- %LOCALAPPDATA%\google\chrome\user data\openvpn-gui.exe
- %LOCALAPPDATA%\google\chrome\user data\libcrypto-1_1.dll
- %TEMP%\565800.cvr
- 'i.##b.co':443
- 'i.##b.co':443
- DNS ASK i.##b.co