Technical Information
- %WINDIR%\explorer.exe
- <Full path to file>
- from <Full path to file> to <Current directory>\old_<File name>.exe
- http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/disallowedcertstl.cab?c1##############
- DNS ASK pa###bin.com
- DNS ASK share.microsoft.com
- DNS ASK go.microsoft.com
- ClassName: 'OleMainThreadWndClass' WindowName: ''
- '<SYSTEM32>\devicecensus.exe' UserCxt