Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'kmyshare.exe' = '%APPDATA%\Microsoft\kmyshare.exe'
- <SYSTEM32>\ctfmon.exe
- %APPDATA%\7237240.bat
- %APPDATA%\Microsoft\kmyshare.exe
- '20#.#3.183.196':8080
- ClassName: 'Indicator' WindowName: '(null)'