Technical Information
- [<HKLM>\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\explorer.exe] 'Debugger' = '%ProgramFiles(x86)%\AVGT\antivirusGT.exe -d'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'AVGT' = '%ProgramFiles(x86)%\AVGT\antivirusGT.exe'
- %HOMEPATH%\desktop\antivirusgt.lnk
- %ALLUSERSPROFILE%\microsoft\windows\start menu\avgt\antivirusgt.lnk
- %ALLUSERSPROFILE%\microsoft\windows\start menu\avgt\uninstall.lnk
- 'adobe.com':80
- 'adobe.com':443
- http://adobe.com/
- 'adobe.com':443
- DNS ASK adobe.com
- DNS ASK wo####ime-sync.com