Техническая информация
- %WINDIR%\tasks\openvpn-gui.job
- <SYSTEM32>\tasks\openvpn-gui
- %TEMP%\machiavelli.dll
- '<SYSTEM32>\notepad.exe'
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 980
- <SYSTEM32>\notepad.exe
- %TEMP%\machiavelli.dll
- %TEMP%\1158276.cvr
- %TEMP%\2490001.jpg
- %LOCALAPPDATA%\google\chrome\user data\default\extension state\openvpn-gui.exe
- %LOCALAPPDATA%\google\chrome\user data\default\extension state\libcrypto-1_1.dll
- 'i.##b.co':443
- 'oc##.thawte.com':80
- 'i.##b.co':443
- DNS ASK i.##b.co
- DNS ASK oc##.thawte.com