Technical Information
- ClassName: 'OLLYDBG', WindowName: 'OllYDbg'
- %WINDIR%\temp\cab64bb.tmp
- %WINDIR%\temp\tar64bc.tmp
- %WINDIR%\temp\cab7aad.tmp
- %WINDIR%\temp\tar7aae.tmp
- %WINDIR%\temp\cab7aed.tmp
- %WINDIR%\temp\tar7aee.tmp
- %WINDIR%\temp\cab9005.tmp
- %WINDIR%\temp\tar9006.tmp
- %WINDIR%\temp\cabbaaf.tmp
- %WINDIR%\temp\tarbab0.tmp
- %WINDIR%\temp\cab64bb.tmp
- %WINDIR%\temp\tar64bc.tmp
- %WINDIR%\temp\cab7aad.tmp
- %WINDIR%\temp\tar7aae.tmp
- %WINDIR%\temp\cab7aed.tmp
- %WINDIR%\temp\tar7aee.tmp
- %WINDIR%\temp\cab9005.tmp
- %WINDIR%\temp\tar9006.tmp
- %WINDIR%\temp\cabbaaf.tmp
- %WINDIR%\temp\tarbab0.tmp
- from <Full path to file> to <Current directory>\vision-igxzvcvh7f432.exe
- 'localhost':49187
- 'localhost':49189
- 'pa###.syninc.store':443
- 'pk#.goog':80
- http://pk#.goog/gsr1/gsr1.crt
- 'localhost':49187
- 'localhost':49189
- 'localhost':49190
- 'pa###.syninc.store':443
- DNS ASK pa###.syninc.store
- DNS ASK pk#.goog