Technical Information
- [<HKCU>\software\microsoft\windows\currentversion\run] '{V0QQP0U0-44737-B0XXW0-B0XXW0A0OC}' = '"<Full path to file>" ..'
- [<HKCU>\software\microsoft\windows\currentversion\run] '{V0QQP0U0-44737-B0XXW0-B0XXW0A0OC}' = '"%APPDATA%\SecurityHealthSystray.exe" ..'
- securityhealthsystray.exe
- %APPDATA%\securityhealthsystray.exe
- 'Mj#####82.portmap.io':49682
- DNS ASK Mj#####82.portmap.io
- DNS ASK mi#####dia.sytes.net
- '%APPDATA%\securityhealthsystray.exe'