Technical Information
- <SYSTEM32>\tasks\firefox default browser agent cdecff18c75fbb13
- %APPDATA%\uftrrvw
- %APPDATA%\uftrrvw
- 'dp#v.cc':80
- 'lr###duct.ru':80
- 'ta####fpirates.net':80
- 'ta####fpirates.net':443
- 'pk#.goog':80
- 'pi####king.online':80
- 'pi####king.online':443
- 'pi##tia.pw':80
- 'pi##tia.pw':443
- http://pk#.goog/gsr1/gsr1.crt
- http://dp#v.cc/tmp/
- http://lr###duct.ru/tmp/
- http://ta####fpirates.net/tmp/
- http://pi####king.online/tmp/
- http://pi##tia.pw/tmp/
- 'ta####fpirates.net':443
- 'pi####king.online':443
- 'pi##tia.pw':443
- DNS ASK dp#v.cc
- DNS ASK lr###duct.ru
- DNS ASK kg##p.com
- DNS ASK ta####fpirates.net
- DNS ASK pk#.goog
- DNS ASK pi####king.online
- DNS ASK pi##tia.pw
- '%APPDATA%\uftrrvw'
- '%APPDATA%\uftrrvw' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {9D37809D-EF6C-4CB8-8A18-0D1D60B6592B} S-1-5-21-1238866942-1249195528-555854008-1000:xabkhwp\user:Interactive:[1]