Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent f44579531b31f217
- %APPDATA%\arddvgt
- %TEMP%\a063.exe
- %APPDATA%\thunderbird\profiles\wjj9aet2.default\cookies.sqlite-shm
- %APPDATA%\arddvgt
- %APPDATA%\thunderbird\profiles\wjj9aet2.default\cookies.sqlite-shm
- %TEMP%\a063.exe
- 'ho####ile-host6.com':80
- '5.###.98.239':80
- http://5.###.98.239/dp123481.exe
- http://ho####ile-host6.com/
- DNS ASK ho####ile-host6.com
- '%TEMP%\a063.exe'
- '<SYSTEM32>\cmd.exe' /C choice /C Y /N /D Y /T 0 &Del %TEMP%\A063.exe
- '<SYSTEM32>\choice.exe' /C Y /N /D Y /T 0