Technical Information
- [HKLM\software\microsoft\windows\currentversion\Policies\Explorer\Run] '517952666' = '%ProgramFiles%\msgburudx.exe'
- [HKCU\software\microsoft\windows nt\currentversion\Windows] 'Load' = ''
- hidden files
- Windows Firewall
- Windows Update
- Windows Security Center
- Windows Defender
- User Account Control (UAC)
- Windows Action Center
- Hides taskbar notifications
- %WINDIR%\syswow64\msiexec.exe
- %ProgramFiles%\msgburudx.exe
- %ProgramFiles%\msgburudx.exe
- 'microsoft.com':80
- 'co###imefl.com':80
- http://co###imefl.com/blog/index.php
- DNS ASK eu####.pool.ntp.org
- DNS ASK no######erica.pool.ntp.org
- DNS ASK microsoft.com
- DNS ASK co###imefl.com
- 'eu####.pool.ntp.org':123
- 'no######erica.pool.ntp.org':123
- 'localhost':59925
- 'localhost':55273
- '%WINDIR%\syswow64\msiexec.exe'