Technical Information
- [<HKLM>\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] 'Java.exe' = '%LOCALAPPDATA%\Java.exe'
- %APPDATA%\microsoft\windows\start menu\programs\startup\java.exe
- %LOCALAPPDATA%\java.exe
- '85.##1.116.172':55
- ClassName: 'Shell_traywnd' WindowName: ''