Technical Information
- <SYSTEM32>\tasks\firefox default browser agent 4db726e807676e30
- chdtdae
- %APPDATA%\chdtdae
- %APPDATA%\chdtdae
- 'ho####ile-host6.com':80
- http://ho####ile-host6.com/
- DNS ASK ho####ile-host6.com
- '%APPDATA%\chdtdae'
- '%APPDATA%\chdtdae' ' (with hidden window)
- '<SYSTEM32>\taskeng.exe' {86D4E1C6-4452-4079-B70A-AA5923CA3776} S-1-5-21-1960123792-2022915161-3775307078-1001:zhyzbmeem\user:Interactive:[1]