Technical Information
- <SYSTEM32>\tasks\firefox default browser agent a751ea54763d0e4c
- %APPDATA%\wdgvjvt
- %APPDATA%\wdgvjvt
- 'pi####kings.online':80
- http://pi####kings.online/tmp/index.php
- DNS ASK ob###ntsev.ru
- DNS ASK ol##ge.at
- DNS ASK nu#c.cc
- DNS ASK pi####kings.online
- '%APPDATA%\wdgvjvt'
- '<SYSTEM32>\taskeng.exe' {55145CF5-1EF5-4C52-82EC-4D31F8D5F33E} S-1-5-21-3691498038-2086406363-2140527554-1000:ymvzwxbavv\user:Interactive:[1]
- '%APPDATA%\wdgvjvt' ' (with hidden window)