Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Omicyb' = 'rundll32.exe %APPDATA%\Uszu\ytip.dll,DllRegisterServer'
- %WINDIR%\syswow64\msiexec.exe
- %APPDATA%\uszu\ytip.dll
- 'il####oubaby1.pro':443
- DNS ASK il####oubaby1.pro
- DNS ASK id####fsanfaskj.com
- DNS ASK fs#####sjdnsasjsj.com
- DNS ASK dk#####ahnfaskmsa.com
- '%WINDIR%\syswow64\msiexec.exe'