Техническая информация
- %WINDIR%\tasks\openvpn-gui.job
- <SYSTEM32>\tasks\openvpn-gui
- %TEMP%\angevin.dll
- '<SYSTEM32>\notepad.exe'
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 304
- <SYSTEM32>\notepad.exe
- %TEMP%\angevin.dll
- %TEMP%\24e0001.jpg
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\openvpn-gui.exe
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\libcrypto-1_1.dll
- %TEMP%\1266494.cvr
- 'i.##b.co':443
- 'oc##.thawte.com':80
- 'i.##b.co':443
- DNS ASK i.##b.co
- DNS ASK oc##.thawte.com