Technical Information
- <SYSTEM32>\tasks\firefox default browser agent dcb8b61365d52037
- %WINDIR%\explorer.exe
- %APPDATA%\jtewshg
- %APPDATA%\jtewshg
- 'fu###ujjul.net':80
- 'st####stitibo.org':80
- 'li####tiyyyul.net':80
- http://fu###ujjul.net/
- http://st####stitibo.org/
- http://li####tiyyyul.net/
- DNS ASK fu###ujjul.net
- DNS ASK st####stitibo.org
- DNS ASK li####tiyyyul.net
- DNS ASK bu####tu44org.org
- DNS ASK nv###kuluir.net
- DNS ASK gu####na49org.org
- DNS ASK hu####dulinu.net
- DNS ASK st###nuytyt.org
- DNS ASK nu###tnulo.me
- DNS ASK yo####umenia5.org
- DNS ASK gu####iimnstra.net
- '%APPDATA%\jtewshg'
- '%APPDATA%\jtewshg' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {43D8B8F3-C226-4DAC-B645-5C7D3040BDD0} S-1-5-21-1960123792-2022915161-3775307078-1001:ofimzk\user:Interactive:[1]