Technical Information
- [<HKCU>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Update' = 'C:\Users\Public\Music\TM\Application Frame Host.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1201' = '0'
- C:\users\public\downloads\9959712969164824\aaaaaaaa.chm
- C:\users\public\music\tm\application frame host.exe
- C:\users\public\music\tm\libcef.dll
- C:\users\public\downloads\9959712969164824\aaaaaaaa.chm
- 'vv##e.com':88
- '11#.#04.171.211':8000
- http://vv###.com:88/KH/116.204.171.211/libcef.dll via vv##e.com
- DNS ASK vv##e.com
- ClassName: 'HH Parent' WindowName: 'HTML Help'
- 'C:\users\public\music\tm\application frame host.exe'
- 'C:\users\public\music\tm\application frame host.exe' AdminAdminAdmin
- '%WINDIR%\hh.exe' C:\Users\Public\Downloads\9959712969164824\AAAAAAAA.CHM