Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 503cdbbfb71a37dd
- %TEMP%\cc4f.tmp
- %APPDATA%\gvrecbh
- %APPDATA%\gvrecbh
- http://pp##pb.com/upload/
- http://tw##mel.com/upload/
- http://la####tasonora.com/upload/
- DNS ASK pp##pb.com
- DNS ASK tw##mel.com
- DNS ASK ho###cash.com
- DNS ASK la####tasonora.com
- DNS ASK kp###ques.com