Technical Information
- '<SYSTEM32>\taskkill.exe' /F /IM chrome.exe
- chrome.exe
- 'ba##.#incoder.pro':80
- 'wp#d':80
- ba##.#incoder.pro/builder/yeniver.php?ty############
- wp#d/wpad.dat
- DNS ASK ba##.#incoder.pro
- DNS ASK wp#d
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'