Technical Information
- [<HKCU>\SOFTWARE\Microsoft\Windows\CurrentVersion\Runonce] 'Eihs' = '%LOCALAPPDATA%\Eihs\Eihs.hta'
- %LOCALAPPDATA%\eihs\eihsset.exe
- %LOCALAPPDATA%\eihs\eihs.hta
- 'drive.google.com':443
- 'do#########ocs.googleusercontent.com':443
- 'fr#####sky2020.ddns.net':3871
- DNS ASK drive.google.com
- DNS ASK do#########ocs.googleusercontent.com
- DNS ASK fr#####sky2020.ddns.net
- '%ProgramFiles(x86)%\internet explorer\ieinstal.exe'