Technical Information
- <SYSTEM32>\tasks\371109ccd6bdebbc830642a436c4748e
- <SYSTEM32>\tasks\4ab105e9ea720046d879de3c37e0c00c
- C:\totalcmd\language\audiodg32.exe
- C:\users\default\local settings\taskhost32.exe
- http://18#.#46.157.250/tyadkywck6l0mje2jojbrfqnv6svubrdqh9lo4x2gn68q30vvi9o/7i10a8i9pegmzvmqhfeoru7wsar7og3v4dzoh24xxbzy7nc9sw25m1cmqsdk/2da7571ea07c8f730521c2f6dacffa20e65b214f.php?2e#########...
- http://18#.#46.157.250/tyadkywck6l0mje2jojbrfqnv6svubrdqh9lo4x2gn68q30vvi9o/7i10a8i9pegmzvmqhfeoru7wsar7og3v4dzoh24xxbzy7nc9sw25m1cmqsdk/2da7571ea07c8f730521c2f6dacffa20e65b214f.php?65#########...
- http://18#.#46.157.250/tyadkywck6l0mje2jojbrfqnv6svubrdqh9lo4x2gn68q30vvi9o/7i10a8i9pegmzvmqhfeoru7wsar7og3v4dzoh24xxbzy7nc9sw25m1cmqsdk/qm95zvyw09zdbumwty16hhas7yj22gy4el2ltrlyb32x406d9hb/1db5...
- http://ip##fo.io/ip
- DNS ASK ip##fo.io
- 'C:\users\default\local settings\taskhost32.exe'