Technical Information
- <SYSTEM32>\tasks\download http service
- <SYSTEM32>\svchost.exe
- %PROGRAMDATA%\니길있.exe
- %APPDATA%\nuiget\니길있.exe
- %APPDATA%\nuiget\settings.ini
- '19#.#23.238.191':443
- '%PROGRAMDATA%\니길있.exe'
- '%APPDATA%\nuiget\니길있.exe'
- '%PROGRAMDATA%\니길있.exe' ' (with hidden window)
- '<SYSTEM32>\svchost.exe' ' (with hidden window)
- '%APPDATA%\nuiget\니길있.exe' ' (with hidden window)
- '<SYSTEM32>\svchost.exe'