Technical Information
- C:\users\default\appdata\msge.exe
- from <Full path to file> to C:\users\default\appdata\msge.exe
- '<LOCALNET>.85.62':0
- '%WINDIR%\syswow64\cmd.exe' /c attrib +h +s +r C:\Users\Default\AppData\MsgE.exe' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c attrib +h +s +r C:\Users\Default\AppData\MsgE.exe
- '%WINDIR%\syswow64\attrib.exe' +h +s +r C:\Users\Default\AppData\MsgE.exe