Technical Information
- %TEMP%\invoice_update.pdf
- %LOCALAPPDATA%\adobe\color\profiles\wscrgb.icc
- %LOCALAPPDATA%\adobe\color\profiles\wsrgb.icc
- %LOCALAPPDATA%\adobe\color\acecache11.lst
- <PATH_SAMPLE>.old_1780013020
- <Full path to file>
- from <Full path to file> to <PATH_SAMPLE>.old_1780013020
- 'jo####list-ae.blog':443
- 'jo####list-ae.blog':443
- DNS ASK jo####list-ae.blog
- '<SYSTEM32>\attrib.exe' +h +s <PATH_SAMPLE>.old_1780013020
- '%ProgramFiles(x86)%\adobe\acrobat reader dc\reader\acrord32.exe' "%TEMP%\Invoice_Update.pdf"
- '<SYSTEM32>\wbem\wmic.exe' csproduct get uuid
- '<SYSTEM32>\attrib.exe' +h +s <PATH_SAMPLE>.old_1780013084