Technical Information
- %WINDIR%\explorer.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\addinprocess.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\edmgen.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\comsvcconfig.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\caspol.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\aspnet_regsql.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\mscorsvw.exe
- %WINDIR%\microsoft.net\framework64\v4.0.30319\msbuild.exe
- DNS ASK gl###wene.com
- '%WINDIR%\microsoft.net\framework64\v4.0.30319\setupcache\v4.7.02558\setup.exe'
- '%WINDIR%\syswow64\rundll32.exe'