Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'tecnologia100' = '1'
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %ProgramFiles(x86)%\tecnologia.sfx.exe
- %ProgramFiles(x86)%\engine_gear_internet_option_security_setting_web_icon_127066.ico
- %WINDIR%\tecnologia100.reg
- %HOMEPATH%\desktop\tecnologia100.lnk
- %ProgramFiles%\tecnologia.exe
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %ProgramFiles%\tecnologia.exe
- 'ip###ger.org':443
- DNS ASK ip###ger.org
- ClassName: 'DDEMLMom' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%ProgramFiles(x86)%\tecnologia.sfx.exe' /pw=1234
- '%WINDIR%\syswow64\regedit.exe' /s %WINDIR%\tecnologia100.reg