Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 6e6df60ce94dfe22
- %TEMP%\cc4f.tmp
- %APPDATA%\uhsagwt
- %APPDATA%\uhsagwt
- %TEMP%\cc4f.tmp
- 'co####tosseg.com':80
- http://co####tosseg.com/upload/
- DNS ASK co####tosseg.com
- DNS ASK in####asidata.com
- DNS ASK oz###ekstil.com
- DNS ASK fi####portal.com
- DNS ASK te#####nadigital.com
- '%APPDATA%\uhsagwt'
- '%APPDATA%\uhsagwt' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {C6DBF4A0-6244-4C7E-8329-B56E0A651D8F} S-1-5-21-1960123792-2022915161-3775307078-1001:wsihkah\user:Interactive:[1]