Technical Information
- <SYSTEM32>\tasks\google\chrome updater
- <SYSTEM32>\tasks\google\drive updater
- iexplore.exe
- %LOCALAPPDATA%\pickerhost.exe
- %LOCALAPPDATA%\mcconfig.dll
- %LOCALAPPDATA%\pickerhost.exe.config
- %LOCALAPPDATA%\confdata.txt
- %LOCALAPPDATA%\pickerhost-t.exe
- %LOCALAPPDATA%\xml.txt
- %LOCALAPPDATA%\xxml.txt
- %LOCALAPPDATA%\tskcr.dll
- %LOCALAPPDATA%\x
- %LOCALAPPDATA%\xx
- %APPDATA%\imminent\logs\21-04-2020
- 'pr#####2.duckdns.org':227
- DNS ASK pr#####2.duckdns.org
- '%LOCALAPPDATA%\pickerhost-t.exe'
- '%LOCALAPPDATA%\pickerhost.exe'
- '%WINDIR%\syswow64\schtasks.exe' /create /TN "GooGle\Chrome Updater" /XML "%LOCALAPPDATA%\x"' (with hidden window)
- '%WINDIR%\syswow64\schtasks.exe' /create /TN "GOOGle\Drive Updater" /XML "%LOCALAPPDATA%\xx"' (with hidden window)
- '%WINDIR%\syswow64\schtasks.exe' /create /TN "GooGle\Chrome Updater" /XML "%LOCALAPPDATA%\x"
- '%WINDIR%\syswow64\schtasks.exe' /create /TN "GOOGle\Drive Updater" /XML "%LOCALAPPDATA%\xx"