Technical Information
- Windows Defender
- '<SYSTEM32>\taskkill.exe' /IM <File name>.exe /F /T
- <SYSTEM32>\cmd.exe
- %APPDATA%\spf\unknown.log
- %TEMP%\atew2vex.bat
- %TEMP%\6272318d-c1ef-4050-bdce-45da9cab0f00.bat
- %TEMP%\6272318d-c1ef-4050-bdce-45da9cab0f00.bat
- ClassName: '' WindowName: ''
- '%TEMP%\atew2vex.bat' ok
- '<SYSTEM32>\cmd.exe' /C "%TEMP%\6272318d-c1ef-4050-bdce-45da9cab0f00.bat"' (with hidden window)
- '<SYSTEM32>\cmd.exe' /C "%TEMP%\6272318d-c1ef-4050-bdce-45da9cab0f00.bat"