Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'E07DD80B-31DA-4432-8762-3AB0B1B89--1919691189' = '%LOCALAPPDATA%\8d93d64b\juschedg.exe'
- %WINDIR%\explorer.exe
- iexplore.exe
- iexplore.exe process, wininet.dll module
- %LOCALAPPDATA%\8d93d64b\juschedg.exe
- 'localhost':52300
- DNS ASK we###-tesr.com