Technical Information
- [<HKLM>\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] 'google' = '%WINDIR%\lsass.exe'
- %WINDIR%\lsass.exe
- %WINDIR%\md5.png
- %WINDIR%\lsass.exe
- '15#.#1.30.17':5555
- '15#.#1.30.17':5555
- ClassName: 'SystemTray_Main' WindowName: ''
- ClassName: 'CTXOPConntion_Class' WindowName: ''
- '%WINDIR%\lsass.exe'
- '%WINDIR%\syswow64\rundll32.exe' USER32.DLL,UpdatePerUserSystemParameters