Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 65ef0b4ef468a108
- %WINDIR%\explorer.exe
- cfafsjh
- %APPDATA%\cfafsjh
- %APPDATA%\cfafsjh
- 'ho####ile-host6.com':80
- http://ho####ile-host6.com/
- DNS ASK ho####ile-host6.com
- DNS ASK ho####ost-file8.com
- '%APPDATA%\cfafsjh'
- '%APPDATA%\cfafsjh' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {53BDFF0E-D258-417B-A3A1-F40EA28B8ACF} S-1-5-21-1960123792-2022915161-3775307078-1001:dauwosamw\user:Interactive:[1]