Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 8a85c043fa6c44f5
- %APPDATA%\auasecv
- %APPDATA%\auasecv
- 'mi##tys.at':80
- 'mo##o.ru':80
- 'ki###irate.ru':443
- http://mi##tys.at/tmp/
- http://mo##o.ru/tmp/
- 'ki###irate.ru':443
- DNS ASK mi##tys.at
- DNS ASK mu##in.ru
- DNS ASK ch###elpi.com
- DNS ASK mo##o.ru
- DNS ASK ki###irate.ru
- '%APPDATA%\auasecv'
- '%APPDATA%\auasecv' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {B6440043-0181-40B3-AF97-3FBDFACDCF5F} S-1-5-21-1960123792-2022915161-3775307078-1001:hzivcyg\user:Interactive:[1]