Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent d64bb5f640d50369
- %WINDIR%\syswow64\explorer.exe
- %WINDIR%\explorer.exe
- iexplore.exe
- Процесс firefox.exe, модуль nss3.dll
- Процесс iexplore.exe, модуль wininet.dll
- %APPDATA%\gdttvri
- %APPDATA%\ugessfw
- %TEMP%\a8c8.exe
- %TEMP%\b354.exe
- %TEMP%\beab.exe
- %APPDATA%\gdttvri
- %APPDATA%\ugessfw
- 'av####osecure.com':80
- 'ru######alawchambers.org':443
- 'ma####-formula.com':443
- 'bi###cket.org':443
- http://av####osecure.com/
- 'ru######alawchambers.org':443
- 'ma####-formula.com':443
- 'bi###cket.org':443
- DNS ASK av####osecure.com
- DNS ASK ru######alawchambers.org
- DNS ASK ma####-formula.com
- DNS ASK microsoft.com
- DNS ASK bi###cket.org
- '%TEMP%\a8c8.exe'
- '%TEMP%\b354.exe'
- '%TEMP%\beab.exe'
- '%WINDIR%\syswow64\explorer.exe'
- '%WINDIR%\explorer.exe'