Technical Information
- <SYSTEM32>\tasks\system cache service
- <SYSTEM32>\svchost.exe
- %APPDATA%\cashcore\oupvvjuu.exe
- %WINDIR%\temp\~dfa57ef8c3861b1adf.tmp
- %APPDATA%\cashcore\settings.ini
- %WINDIR%\temp\~dfa57ef8c3861b1adf.tmp
- '46.##4.235.36':449
- '%APPDATA%\cashcore\oupvvjuu.exe'
- '<SYSTEM32>\svchost.exe' ' (with hidden window)
- '%APPDATA%\cashcore\oupvvjuu.exe' ' (with hidden window)
- '<SYSTEM32>\svchost.exe'