Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 5a343e800964235b
- %WINDIR%\microsoft.net\framework\v4.0.30319\applaunch.exe
- %APPDATA%\vsvsihg
- %TEMP%\d110.exe
- %TEMP%\ddae.exe
- %APPDATA%\thunderbird\profiles\wjj9aet2.default\cookies.sqlite-shm
- %APPDATA%\vsvsihg
- %APPDATA%\thunderbird\profiles\wjj9aet2.default\cookies.sqlite-shm
- %TEMP%\d110.exe
- 'ho####ile-host6.com':80
- 'bi###cket.org':443
- 'dl.###oadgram.me':443
- '13#.#77.183.217':80
- 'cd#####.anonfiles.com':443
- http://13#.#77.183.217/123.exe
- http://ho####ile-host6.com/
- 'bi###cket.org':443
- 'dl.###oadgram.me':443
- 'cd#####.anonfiles.com':443
- DNS ASK ho####ile-host6.com
- DNS ASK bi###cket.org
- DNS ASK dl.###oadgram.me
- DNS ASK microsoft.com
- DNS ASK cd#####.anonfiles.com
- '%TEMP%\d110.exe'
- '%TEMP%\ddae.exe'
- '%WINDIR%\microsoft.net\framework\v4.0.30319\applaunch.exe'
- '<SYSTEM32>\cmd.exe' /C choice /C Y /N /D Y /T 0 &Del %TEMP%\D110.exe
- '<SYSTEM32>\choice.exe' /C Y /N /D Y /T 0