Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 37e5a7efb08ef1d6
- %WINDIR%\syswow64\explorer.exe
- %WINDIR%\explorer.exe
- iexplore.exe
- Процесс iexplore.exe, модуль wininet.dll
- Процесс firefox.exe, модуль nss3.dll
- %APPDATA%\uisvvfr
- %APPDATA%\dhvfrhv
- %TEMP%\203.exe
- %TEMP%\2d86.exe
- %APPDATA%\uisvvfr
- %APPDATA%\dhvfrhv
- 'ko####olitizm.org':80
- 'gi##ub.com':443
- 'dr##box.com':443
- 'vk.com':80
- 'vk.com':443
- 'cd#####.anonfiles.com':443
- 'by###ce.co.za':80
- http://vk.com/
- http://by###ce.co.za/777444777.exe
- http://by###ce.co.za/jasper.exe
- http://ko####olitizm.org/
- 'gi##ub.com':443
- 'dr##box.com':443
- 'vk.com':443
- 'cd#####.anonfiles.com':443
- DNS ASK ko####olitizm.org
- DNS ASK gi##ub.com
- DNS ASK dr##box.com
- DNS ASK vk.com
- DNS ASK cd#####.anonfiles.com
- DNS ASK by###ce.co.za
- '%TEMP%\203.exe'
- '%TEMP%\2d86.exe'
- '%WINDIR%\syswow64\explorer.exe'
- '%WINDIR%\explorer.exe'