Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Remote Resource Panel Task' = '%APPDATA%\jaingbfmkgwg\tnsevjfk.exe'
- '%APPDATA%\jaingbfmkgwg\lsxylljq.exe' "%APPDATA%\jaingbfmkgwg\tnsevjfk.exe"
- '%APPDATA%\jaingbfmkgwg\tnsevjfk.exe'
- %APPDATA%\jaingbfmkgwg\tnsevjfk.zln
- %APPDATA%\jaingbfmkgwg\lsxylljq.exe
- %APPDATA%\jaingbfmkgwg\tnsevjfk.exe
- %APPDATA%\jaingbfmkgwg\lsxylljq.exe
- %APPDATA%\jaingbfmkgwg\tnsevjfk.exe
- 'se####control.net':80
- 'ag####tfather.net':80
- 'do###father.net':80
- 'qu####ogether.net':80
- 'se####together.net':80
- 'qu####ontrol.net':80
- 'ag####tapple.net':80
- 'ag####tcarry.net':80
- 'do###carry.net':80
- 'ni###father.net':80
- 'do###apple.net':80
- 'ag####tbuilt.net':80
- 'do###built.net':80
- 'se###nspent.net':80
- 'br###matter.net':80
- 'fl###spent.net':80
- 'br###spent.net':80
- 'be####control.net':80
- 'ga####control.net':80
- 'fl###matter.net':80
- 'fl####ogether.net':80
- 'qu###matter.net':80
- 'se####matter.net':80
- 'qu###spent.net':80
- 'br####ogether.net':80
- 'fl####ontrol.net':80
- 'br####ontrol.net':80
- se####control.net/forum/search.php?em#######################################
- ag####tfather.net/forum/search.php?em#######################################
- do###father.net/forum/search.php?em#######################################
- qu####ogether.net/forum/search.php?em#######################################
- se####together.net/forum/search.php?em#######################################
- qu####ontrol.net/forum/search.php?em#######################################
- ag####tapple.net/forum/search.php?em#######################################
- ag####tcarry.net/forum/search.php?em#######################################
- do###carry.net/forum/search.php?em#######################################
- ni###father.net/forum/search.php?em#######################################
- do###apple.net/forum/search.php?em#######################################
- ag####tbuilt.net/forum/search.php?em#######################################
- do###built.net/forum/search.php?em#######################################
- se###nspent.net/forum/search.php?em#######################################
- br###matter.net/forum/search.php?em#######################################
- fl###spent.net/forum/search.php?em#######################################
- br###spent.net/forum/search.php?em#######################################
- be####control.net/forum/search.php?em#######################################
- ga####control.net/forum/search.php?em#######################################
- fl###matter.net/forum/search.php?em#######################################
- fl####ogether.net/forum/search.php?em#######################################
- qu###matter.net/forum/search.php?em#######################################
- se####matter.net/forum/search.php?em#######################################
- qu###spent.net/forum/search.php?em#######################################
- br####ogether.net/forum/search.php?em#######################################
- fl####ontrol.net/forum/search.php?em#######################################
- br####ontrol.net/forum/search.php?em#######################################
- DNS ASK ag####tfather.net
- DNS ASK do###father.net
- DNS ASK ag####tapple.net
- DNS ASK se####control.net
- DNS ASK qu####ogether.net
- DNS ASK se####together.net
- DNS ASK qu####ontrol.net
- DNS ASK do###carry.net
- DNS ASK ni###father.net
- DNS ASK de####father.net
- DNS ASK ag####tcarry.net
- DNS ASK do###apple.net
- DNS ASK ag####tbuilt.net
- DNS ASK do###built.net
- DNS ASK fl###spent.net
- DNS ASK br###spent.net
- DNS ASK fl####ogether.net
- DNS ASK br###matter.net
- DNS ASK be####control.net
- DNS ASK ga####control.net
- DNS ASK fl###matter.net
- DNS ASK se####matter.net
- DNS ASK qu###spent.net
- DNS ASK se###nspent.net
- DNS ASK qu###matter.net
- DNS ASK br####ogether.net
- DNS ASK fl####ontrol.net
- DNS ASK br####ontrol.net
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'