Technical Information
- User Account Control (UAC)
- '%WINDIR%\syswow64\taskkill.exe' /f /t /im k4.exe
- C:\users\public\documents\tasloginbase.dll
- 'de########.microsoftmiddlename.tk':80
- http://de########.microsoftmiddlename.tk/picturess/40.91.log
- http://de########.microsoftmiddlename.tk/picturess/13.txt
- http://de########.microsoftmiddlename.tk/picturess/uvb.jpg
- http://de########.microsoftmiddlename.tk/picturess/systems.exe
- http://de########.microsoftmiddlename.tk/picturess/TASLoginBase5.dll
- http://de########.microsoftmiddlename.tk/picturess/IMG2022.jpg
- http://de########.microsoftmiddlename.tk/picturess/pig.jpg
- http://de########.microsoftmiddlename.tk/picturess/unzip.exe
- http://de########.microsoftmiddlename.tk/picturess/unzip.jpg
- http://de########.microsoftmiddlename.tk/picturess/unziplnk.jpg
- DNS ASK de########.microsoftmiddlename.tk
- ClassName: '' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c taskkill /f /t /im k4.exe' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c C:\Users\Public\Documents\2022060125.vbe' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c taskkill /f /t /im k4.exe
- '%WINDIR%\syswow64\cmd.exe' /c C:\Users\Public\Documents\2022060125.vbe