Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 74fe9a4c251967cd
- %WINDIR%\syswow64\explorer.exe
- %WINDIR%\explorer.exe
- iexplore.exe
- Процесс firefox.exe, модуль nss3.dll
- Процесс iexplore.exe, модуль wininet.dll
- %APPDATA%\iethitu
- %APPDATA%\hewvjre
- %TEMP%\a262.exe
- %TEMP%\abc6.exe
- %APPDATA%\iethitu
- %APPDATA%\hewvjre
- 'av####osecure.com':80
- 'ru######alawchambers.org':443
- 'bi###cket.org':443
- 'ma####-formula.com':443
- http://av####osecure.com/
- 'ru######alawchambers.org':443
- 'bi###cket.org':443
- 'ma####-formula.com':443
- DNS ASK av####osecure.com
- DNS ASK ru######alawchambers.org
- DNS ASK bi###cket.org
- DNS ASK ma####-formula.com
- DNS ASK microsoft.com
- '%TEMP%\a262.exe'
- '%TEMP%\abc6.exe'
- '%WINDIR%\syswow64\explorer.exe'
- '%WINDIR%\explorer.exe'