Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 0d4f0138f91a3f66
- %WINDIR%\explorer.exe
- %APPDATA%\gctrhib
- %APPDATA%\gctrhib
- 'fu###ujjul.net':80
- 'st####stitibo.org':80
- 'li####tiyyyul.net':80
- http://fu###ujjul.net/
- http://st####stitibo.org/
- http://li####tiyyyul.net/
- DNS ASK fu###ujjul.net
- DNS ASK st####stitibo.org
- DNS ASK li####tiyyyul.net
- DNS ASK bu####tu44org.org
- DNS ASK nv###kuluir.net
- DNS ASK gu####na49org.org
- DNS ASK hu####dulinu.net
- DNS ASK st###nuytyt.org
- DNS ASK nu###tnulo.me
- DNS ASK yo####umenia5.org
- DNS ASK gu####iimnstra.net
- '%APPDATA%\gctrhib'
- '%APPDATA%\gctrhib' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {86D5C467-1521-4312-8D1A-791F75599C2D} S-1-5-21-1960123792-2022915161-3775307078-1001:bgonesy\user:Interactive:[1]