Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent a1019ef51b2e02ac
- %APPDATA%\rcrtrjt
- %APPDATA%\rcrtrjt
- 'ho####ile-host6.com':80
- 'so###ads.net':443
- 'tr##sfer.sh':443
- 'gi##ub.com':443
- 'fi######ter-cluster-1.com':80
- 'gc####yx.beget.tech':80
- 'ip###ger.org':443
- 'bi###cket.org':443
- http://gc####yx.beget.tech/new_go.exe
- http://ho####ile-host6.com/
- 'so###ads.net':443
- 'tr##sfer.sh':443
- 'gi##ub.com':443
- 'ip###ger.org':443
- 'bi###cket.org':443
- DNS ASK ho####ile-host6.com
- DNS ASK so###ads.net
- DNS ASK tr##sfer.sh
- DNS ASK gi##ub.com
- DNS ASK fi######ter-cluster-1.com
- DNS ASK gc####yx.beget.tech
- DNS ASK ip###ger.org
- DNS ASK bi###cket.org
- '%APPDATA%\rcrtrjt'
- '%APPDATA%\rcrtrjt' ' (со скрытым окном)
- '<SYSTEM32>\taskeng.exe' {E6AF5668-3CD9-47D7-AB1C-13C7A9D1576F} S-1-5-21-1960123792-2022915161-3775307078-1001:wkiiqsdyv\user:Interactive:[1]