Technical Information
- %WINDIR%\explorer.exe
- 'cd#.##scordapp.com':443
- 'microsoft.com':80
- 'ov#####waterfront.com':80
- 'gr###ysigns.com':80
- 'id####indowmfg.com':80
- 'oc##.#tartssl.com':80
- 'co#####withyourkid.com':80
- 'st###opeer.com':80
- 'localhost':80
- http://www.ri##plc.com/rsb4/?yV############################################################################################
- 'cd#.##scordapp.com':443
- DNS ASK cd#.##scordapp.com
- DNS ASK microsoft.com
- DNS ASK ov#####waterfront.com
- DNS ASK gr###ysigns.com
- DNS ASK yo####ridgeplan.com
- DNS ASK id####indowmfg.com
- DNS ASK ri##plc.com
- DNS ASK co#####withyourkid.com
- DNS ASK oc##.#tartssl.com
- DNS ASK st###opeer.com
- DNS ASK as##ine.com
- '%WINDIR%\syswow64\secinit.exe'
- '%WINDIR%\syswow64\ipconfig.exe'