Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Tiny Firewall' = '<SYSTEM32>\msvcrtid.exe'
- '<SYSTEM32>\msdtcvs.exe' 6960
- '<SYSTEM32>\smssdtc.exe' 7518
- '<SYSTEM32>\locallpr.exe'
- '<SYSTEM32>\msievc.exe' 5675
- <SYSTEM32>\msdtcvs.exe
- <SYSTEM32>\smssdtc.exe
- <SYSTEM32>\msievc.exe
- <SYSTEM32>\locallpr.exe
- <SYSTEM32>\msvcrtid.exe
- 'ir#.###-all-online.com':6667
- DNS ASK ir#.###-all-online.com
- ClassName: 'Shell_TrayWnd' WindowName: ''