Technical Information
- %APPDATA%\microsoft\windows\start menu\programs\startup\lgm73lj5dukpao.exe
- %WINDIR%\syswow64\cmd.exe
- '34.##9.100.209':443
- DNS ASK co##############e-chains.prod.autograph.services.mozaws.net
- '%APPDATA%\microsoft\windows\start menu\programs\startup\lgm73lj5dukpao.exe' "<Full path to file>"
- '%WINDIR%\syswow64\cmd.exe'
- '<Full path to file>' ' (with hidden window)
- '%APPDATA%\microsoft\windows\start menu\programs\startup\lgm73lj5dukpao.exe' "<Full path to file>"' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' ' (with hidden window)