Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 64cb80be0f418793
- %APPDATA%\utgditv
- %APPDATA%\utgditv
- 'ni##e.org':80
- 'so##z.ru':80
- 'ta####fpirates.net':80
- 'ta####fpirates.net':443
- 'pk#.goog':80
- http://pk#.goog/gsr1/gsr1.crt
- http://ni##e.org/tmp/index.php
- http://so##z.ru/tmp/index.php
- http://ta####fpirates.net/tmp/index.php
- 'ta####fpirates.net':443
- DNS ASK ni##e.org
- DNS ASK so##z.ru
- DNS ASK ua##.com.ua
- DNS ASK ta####fpirates.net
- DNS ASK pk#.goog
- '%APPDATA%\utgditv'
- '%APPDATA%\utgditv' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {BB020AE3-B523-44BD-B242-7ADF44E26598} S-1-5-21-1238866942-1249195528-555854008-1000:dwzilrqwlqmp\user:Interactive:[1]