Technical Information
- <SYSTEM32>\tasks\firefox default browser agent d4170ae180e501a8
- %TEMP%\cc4f.tmp
- %APPDATA%\guwhvir
- %APPDATA%\guwhvir
- %TEMP%\cc4f.tmp
- 'ka###ebiyat.com':80
- http://ka###ebiyat.com/upload/
- DNS ASK 20##tc.com
- DNS ASK yz##w.com
- DNS ASK ka###ebiyat.com
- DNS ASK ex####izizmir.com
- DNS ASK de##ndy.com
- DNS ASK th##ncu.com
- '%APPDATA%\guwhvir'
- '%APPDATA%\guwhvir' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {93954CA3-34A6-4535-BDC9-89F5E661E801} S-1-5-21-1960123792-2022915161-3775307078-1001:evuojity\user:Interactive:[1]