Technical Information
- Windows Defender
- '<SYSTEM32>\taskkill.exe' /IM <File name>.exe /F /T
- <SYSTEM32>\cmd.exe
- %APPDATA%\spf\unknown.log
- %TEMP%\i4akkp0n.bat
- %TEMP%\6ebe9034-a830-4fad-ade5-f16d7ad2af06.bat
- %TEMP%\6ebe9034-a830-4fad-ade5-f16d7ad2af06.bat
- ClassName: '' WindowName: ''
- '%TEMP%\i4akkp0n.bat' ok
- '<SYSTEM32>\cmd.exe' /C "%TEMP%\6ebe9034-a830-4fad-ade5-f16d7ad2af06.bat"' (with hidden window)
- '<SYSTEM32>\cmd.exe' /C "%TEMP%\6ebe9034-a830-4fad-ade5-f16d7ad2af06.bat"