Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 8ee23a63d12f4ed2
- %WINDIR%\explorer.exe
- %APPDATA%\dgsecgt
- %APPDATA%\dgsecgt
- 'ta##i.at':80
- '01##roy.ru':80
- 'gr###grad.ru':80
- 'gr###grad.ru':443
- 'pk#.goog':80
- 'ki###irate.ru':80
- 'ki###irate.ru':443
- http://pk#.goog/gsr1/gsr1.crt
- http://ta##i.at/tmp/
- http://01##roy.ru/tmp/
- http://gr###grad.ru/tmp/
- http://ki###irate.ru/tmp/
- 'gr###grad.ru':443
- 'ki###irate.ru':443
- DNS ASK ta##i.at
- DNS ASK 01##roy.ru
- DNS ASK ma##net.com
- DNS ASK gr###grad.ru
- DNS ASK pk#.goog
- DNS ASK ki###irate.ru
- '%APPDATA%\dgsecgt'
- '%APPDATA%\dgsecgt' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {36102CFD-AD7E-4821-9E32-8583BBE4EA4D} S-1-5-21-1238866942-1249195528-555854008-1000:bieckve\user:Interactive:[1]