Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '57e7799a174daead2842cfb078c87506' = '"%TEMP%\GTA V.exe" ..'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '57e7799a174daead2842cfb078c87506' = '"%TEMP%\GTA V.exe" ..'
- %HOMEPATH%\Start Menu\Programs\Startup\57e7799a174daead2842cfb078c87506.exe
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%TEMP%\GTA V.exe' = '%TEMP%\GTA V.exe:*:Enabled:GTA V.exe'
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "%TEMP%\GTA V.exe" "GTA V.exe" ENABLE
- %TEMP%\GTA V.exe
- %TEMP%\Rocket-League-hack.jpg
- 'fz####1.ddns.net':5553
- DNS ASK fz####1.ddns.net
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''
- '%TEMP%\GTA V.exe'
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %TEMP%\Rocket-League-hack.jpg