Technical Information
- %WINDIR%\win.ini
- <Full path to file>:{cf24ace6-2d3e6759-bc013db5-23c66be4}
- %APPDATA%\obsidium\{ae2070cb-cc398b2c-5afc6188-84cb4811}
- %TEMP%\9cf1405d5c8143949209a8ebfee9c39f.tmp
- %TEMP%\24eb85e3e39f4f96bc0fa7869bd72f5f.tmp
- %TEMP%\194950bc490e4022ad5d2bbfeb961e73.tmp
- %TEMP%\a758ca1abc9d405c9a5ec5a33ad1d430.tmp
- %TEMP%\11c7c8ea460e43708c15e6df390baf48.tmp
- %TEMP%\8476ff03d5e84b69bc0f78e18ba7128a.tmp
- %LOCALAPPDATA%\bolidelog\{1f078106-2c62-4f82-8b72-c1cc3d48e5de}.txt
- 'go#####analytics.com':443
- DNS ASK go#####analytics.com