Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 176c072f37b28496
- %WINDIR%\explorer.exe
- ersurcs
- %APPDATA%\ersurcs
- %APPDATA%\ersurcs
- 'ho####ile-host6.com':80
- http://ho####ile-host6.com/
- DNS ASK ho####ile-host6.com
- DNS ASK ho####ost-file8.com
- '%APPDATA%\ersurcs'
- '%APPDATA%\ersurcs' ' (со скрытым окном)
- '<SYSTEM32>\taskeng.exe' {92EC727B-D140-417A-AEDC-D6156A465AFF} S-1-5-21-1960123792-2022915161-3775307078-1001:gszfdtyu\user:Interactive:[1]