Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 4c8972f6db402814
- %WINDIR%\explorer.exe
- bahtuih
- %APPDATA%\bahtuih
- %APPDATA%\bahtuih
- 'ho####ile-host6.com':80
- 'an###iles.com':443
- '19#.#33.8.122':80
- 'tr##sfer.sh':443
- 'gi##ub.com':443
- 'dl.###oadgram.me':443
- http://ho####ile-host6.com/
- 'an###iles.com':443
- 'tr##sfer.sh':443
- 'gi##ub.com':443
- 'dl.###oadgram.me':443
- DNS ASK ho####ile-host6.com
- DNS ASK an###iles.com
- DNS ASK tr##sfer.sh
- DNS ASK gi##ub.com
- DNS ASK dl.###oadgram.me
- '%APPDATA%\bahtuih'
- '%APPDATA%\bahtuih' ' (со скрытым окном)
- '<SYSTEM32>\taskeng.exe' {2F1C8CF9-7B35-4C11-BE1A-917B90E5138C} S-1-5-21-1960123792-2022915161-3775307078-1001:cftwdxivjsun\user:Interactive:[1]