Technical Information
- %LOCALAPPDATA%\ssir\1.3.0.0\xsandbox.bin.__tmp__
- %TEMP%\spoon\cache\0x328aaac3f5b5b803\sxs\manifests\ssir.exe_0x14afa2e83b8047dad900ca7b169c9bb6.1.manifest.__tmp__
- %TEMP%\spoon\cache\0x328aaac3f5b5b803\sxs\ssir.exe\ssir.exe.manifest.__tmp__
- %APPDATA%\logs\02-14-2020
- from %LOCALAPPDATA%\ssir\1.3.0.0\xsandbox.bin.__tmp__ to %LOCALAPPDATA%\ssir\1.3.0.0\xsandbox.bin
- from %TEMP%\spoon\cache\0x328aaac3f5b5b803\sxs\manifests\ssir.exe_0x14afa2e83b8047dad900ca7b169c9bb6.1.manifest.__tmp__ to %TEMP%\spoon\cache\0x328aaac3f5b5b803\sxs\manifests\ssir.exe_0x14afa2e83b8047dad900ca7b169c9bb6.1.manifest
- from %TEMP%\spoon\cache\0x328aaac3f5b5b803\sxs\ssir.exe\ssir.exe.manifest.__tmp__ to %TEMP%\spoon\cache\0x328aaac3f5b5b803\sxs\ssir.exe\ssir.exe.manifest
- '18#.#35.129.249':111
- http://ip##pi.com/json/
- DNS ASK ip##pi.com