Technical Information
- <SYSTEM32>\tasks\firefox default browser agent e02f76b4704610e3
- %WINDIR%\explorer.exe
- %APPDATA%\wftwruc
- %APPDATA%\wftwruc
- 'wi####auspost.at':80
- 'ms##k.ru':80
- 'gr###grad.ru':80
- 'gr###grad.ru':443
- 'pk#.goog':80
- 'ta####fpirates.net':80
- 'ta####fpirates.net':443
- http://pk#.goog/gsr1/gsr1.crt
- http://wi####auspost.at/tmp/
- http://ms##k.ru/tmp/
- http://gr###grad.ru/tmp/
- http://ta####fpirates.net/tmp/
- 'gr###grad.ru':443
- 'ta####fpirates.net':443
- DNS ASK wi####auspost.at
- DNS ASK ms##k.ru
- DNS ASK so###gem.com
- DNS ASK gr###grad.ru
- DNS ASK pk#.goog
- DNS ASK ta####fpirates.net
- '%APPDATA%\wftwruc'
- '%APPDATA%\wftwruc' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {D2CDC0D7-6146-42E8-93B1-3BB193B1FDC1} S-1-5-21-1238866942-1249195528-555854008-1000:tjvtqwasv\user:Interactive:[1]