Technical Information
- [HKLM\System\CurrentControlSet\Services\VirtualDesktopManager] 'Start' = '00000002'
- [HKLM\System\CurrentControlSet\Services\VirtualDesktopManager] 'ImagePath' = '%WINDIR%\Vss\ojxwm.exe'
- 'VirtualDesktopManager' %WINDIR%\Vss\ojxwm.exe
- from <Full path to file> to %WINDIR%\vss\ojxwm.exe
- 'dn#.google':443
- 'co####.#ot.dns.yandex.net':443
- 'cl####lare-dns.com':443
- '45.#7.246.5':443
- '19#.#7.71.186':443
- '34.##9.100.209':443
- 'dn#.google':443
- 'co####.#ot.dns.yandex.net':443
- 'cl####lare-dns.com':443
- '45.#7.246.5':443
- '19#.#7.71.186':443
- '34.##9.100.209':443
- DNS ASK dn#.google
- DNS ASK co####.#ot.dns.yandex.net
- DNS ASK cl####lare-dns.com
- '::#####193.37.71.186':8083