Technical Information
- %LOCALAPPDATA%\microsoft\windows\history\history.ie5\mshist012021090420210905\index.dat
- 'en.##emtub.gq':80
- 'ww#.#aemtub.gq':80
- 'google.com':443
- 'im##.wsimg.com':443
- 'oc##.##arfieldtech.com':80
- http://en.##emtub.gq/px.js?ch##
- http://ww#.#aemtub.gq/
- http://oc##.##arfieldtech.com//MEQwQjBAMD4wPDAJBgUrDgMCGgUABBSLwZ6EW5gdYc9UaSEaaLjjETNtkAQUv1%2B30c7dH4b0W1Ws3NcQwg6piOcCAzkUhA%3D%3D
- http://oc##.##arfieldtech.com//MEIwQDA%2BMDwwOjAJBgUrDgMCGgUABBQUwPiEZQ6%2FsVZNPaFToNfxx8ZwqAQUfAwyH6fZMH%2FEfWijYqihzqsHWycCAQc%3D
- 'google.com':443
- 'im##.wsimg.com':443
- DNS ASK en.##emtub.gq
- DNS ASK ww#.#aemtub.gq
- DNS ASK google.com
- DNS ASK microsoft.com
- DNS ASK im##.wsimg.com
- DNS ASK oc##.##arfieldtech.com
- DNS ASK st####.rapidssl.com
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''