Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 18814d583981931d
- %TEMP%\ae30.tmp
- %APPDATA%\wgrdhuu
- %APPDATA%\biibeuf
- %TEMP%\58d9.exe
- %TEMP%\5fdc.exe
- %TEMP%\85c4.exe
- %TEMP%\c267.exe
- %TEMP%\ddd4.exe
- %TEMP%\e65d.exe
- %TEMP%\2bf6.exe
- %TEMP%\5f94.exe
- %TEMP%\67b0.exe
- %LOCALAPPDATA%low\sqlite3.dll
- %LOCALAPPDATA%low\fraqbc8wsa
- %LOCALAPPDATA%low\1xvpfvjcrg
- %APPDATA%\wgrdhuu
- %APPDATA%\biibeuf
- %LOCALAPPDATA%low\fraqbc8wsa
- %LOCALAPPDATA%low\1xvpfvjcrg
- '74.##9.192.253':80
- 'ut#.#aded24.ru':443
- '19#.#9.225.45':80
- '17#.#0.40.83':7710
- '10#.#70.27.76':1318
- '20#.#85.119.191':18846
- 'b.###is24.ru':443
- 're########decocinasindustriales.es':443
- '17#.#21.14.128':80
- 'gi####immejimmy.top':443
- http://99###########51-service10020125999080321.xyz/reestr.exe
- http://99###########51-service10020125999080321.xyz/
- http://17#.##.40.83:7710// via 17#.#0.40.83
- http://10#.##0.27.76:1318// via 10#.#70.27.76
- http://20#.###.119.191:18846// via 20#.#85.119.191
- DNS ASK 99###########older1002002131-service1002.space
- DNS ASK re########decocinasindustriales.es
- DNS ASK b.###is24.ru
- DNS ASK te##te.in
- DNS ASK ut#.#aded24.ru
- DNS ASK 99###########51-service10020125999080321.xyz
- DNS ASK 99############1-service10020125999080321.website
- DNS ASK 99###########71-service100201dom25999080321.ru
- DNS ASK 99###########t1341-service10020125999080321.ru
- DNS ASK 99############2671-service10020125999080321.online
- DNS ASK 99############5671-service10020125999080321.tech
- DNS ASK 99###########13461-service10020125999080321.net
- DNS ASK 99############4781-service10020125999080321.info
- DNS ASK 99###########13561-service10020125999080321.su
- DNS ASK 99###########t3481-service10020125999080321.ru
- DNS ASK 99############3531-service1002012425999080321.ru
- DNS ASK 99############34831-service10020125999080321.space
- DNS ASK 99############46831-service10020125999080321.space
- DNS ASK 99############47831-service10020125999080321.space
- DNS ASK 99############36831-service10020125999080321.space
- DNS ASK 99############25831-service10020125999080321.space
- DNS ASK 99###########older33417-012425999080321.space
- DNS ASK 99###########older1002002531-service1002.space
- DNS ASK 99###########older1002002431-service1002.space
- DNS ASK 99##########folder3100231-service1002.space
- DNS ASK 99###########older1002002231-service1002.space
- DNS ASK ap#.ip.sb
- DNS ASK gi####immejimmy.top
- '%TEMP%\58d9.exe'
- '%TEMP%\5fdc.exe'
- '%TEMP%\85c4.exe'
- '%TEMP%\c267.exe'
- '%TEMP%\ddd4.exe'
- '%TEMP%\e65d.exe'
- '%TEMP%\2bf6.exe'
- '%TEMP%\5f94.exe'
- '%TEMP%\67b0.exe'