Техническая информация
- https://dliesel.com/aa.exe как %appdata%\aa.exe
- %WINDIR%\explorer.exe
- %WINDIR%\syswow64\msdt.exe
- aa.exe
- iexplore.exe
- firefox.exe
- Процесс firefox.exe, модуль nss3.dll
- %WINDIR%\syswow64\autoconv.exe
- %TEMP%\abctfhghghghghВЈ.sct
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\metadata\f0accf77cdcbff39f6191887f6d2d357
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\content\f0accf77cdcbff39f6191887f6d2d357
- %PROGRAMDATA%\hrjytrj.cmd
- %APPDATA%\aa.exe
- %APPDATA%\aa.exe
- 'dl##sel.com':443
- DNS ASK dl##sel.com
- '%APPDATA%\aa.exe'
- '%WINDIR%\syswow64\msdt.exe'
- '%WINDIR%\syswow64\cmd.exe' del "%APPDATA%\aa.exe"