Technical Information
- <SYSTEM32>\tasks\startmenuexperiencehost
- %ALLUSERSPROFILE%\startmenuexperiencehost.exe
- <Full path to file>
- %ALLUSERSPROFILE%\startmenuexperiencehost.exe
- '14#.#2.43.221':6666
- 'zh####s.ipshu.com':443
- 'oc##.##ust-provider.cn':80
- http://oc##.##ust-provider.cn/MFIwUDBOMEwwSjAJBgUrDgMCGgUABBQDhvjmfMdSVsHZ9u52p9jqu3rd8gQUXzp8ERB%2BDGdxYdyLo7UAA2f1VxwCEQC2B52AzlDX1r7UsJRUZ6J5
- '14#.#2.43.221':6666
- 'zh####s.ipshu.com':443
- DNS ASK zh####s.ipshu.com
- DNS ASK oc##.##ust-provider.cn
- '%ALLUSERSPROFILE%\startmenuexperiencehost.exe'