Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 7492bd5e1b335846
- %WINDIR%\explorer.exe
- %APPDATA%\gheuees
- %APPDATA%\gheuees
- 'fu###ujjul.net':80
- 'st####stitibo.org':80
- 'li####tiyyyul.net':80
- http://fu###ujjul.net/
- http://st####stitibo.org/
- http://li####tiyyyul.net/
- DNS ASK fu###ujjul.net
- DNS ASK st####stitibo.org
- DNS ASK li####tiyyyul.net
- DNS ASK bu####tu44org.org
- DNS ASK nv###kuluir.net
- DNS ASK gu####na49org.org
- DNS ASK hu####dulinu.net
- DNS ASK st###nuytyt.org
- DNS ASK nu###tnulo.me
- DNS ASK yo####umenia5.org
- DNS ASK gu####iimnstra.net
- '%APPDATA%\gheuees'
- '%APPDATA%\gheuees' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {053148AF-4CAB-4D50-BD8E-91B3CB52BEE7} S-1-5-21-1960123792-2022915161-3775307078-1001:tgnqte\user:Interactive:[1]