Technical Information
- iexplore.exe
- iexplore.exe process, wininet.dll module
- iexplore.exe process, mswsock.dll module
- firefox.exe process, mswsock.dll module
- firefox.exe process, nss3.dll module
- %TEMP%\getx64btit.exe
- %TEMP%\x64btit.txt
- %TEMP%\x64btit.txt
- %TEMP%\getx64btit.exe
- 'ti###a.nist.gov':13
- http://12#.31.0.34/tor/status-vote/current/consensus
- http://94.##0.125.43/tor/server/fp/8d253eda7f7a9b50e5db3ba2f0bb5334e2691143
- DNS ASK ap#.#pify.org
- DNS ASK ti###a.nist.gov
- ClassName: 'MS_WINHELP' WindowName: ''
- '%TEMP%\getx64btit.exe'