Technical Information
- C:\users\public\file6.exe
- %HOMEPATH%\application data\microsoft\forms\winword.box
- http://mo#####remohtava.com/rtsux/1598277848.png
- http://wa###psyche.nl/pndjzdn/1598277848.png
- http://fo###gate.be/kowyfuvdrtk/1598277848.png
- http://in###tionus.com/wplay/1598277848.png
- http://42####strain.com/jqfios/1598277848.png
- http://42####strain.com/cgi-sys/suspendedpage.cgi
- DNS ASK sh##ee.in
- DNS ASK mo#####remohtava.com
- DNS ASK wa###psyche.nl
- DNS ASK fo###gate.be
- DNS ASK in###tionus.com
- DNS ASK bi#.ly
- DNS ASK 42####strain.com