Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 003ba717e678dad3
- %APPDATA%\vtettsg
- %APPDATA%\vtettsg
- 'dp#v.cc':80
- 'lr###duct.ru':80
- 'ta####fpirates.net':80
- 'ta####fpirates.net':443
- 'pk#.goog':80
- 'pi####king.online':80
- 'pi##tia.pw':80
- 'pi##tia.pw':443
- 'go###ratia.ru':80
- 'go###ratia.ru':443
- http://pk#.goog/gsr1/gsr1.crt
- http://dp#v.cc/tmp/
- http://lr###duct.ru/tmp/
- http://ta####fpirates.net/tmp/
- http://pi####king.online/tmp/
- http://pi##tia.pw/tmp/
- http://go###ratia.ru/tmp/
- 'ta####fpirates.net':443
- 'pi##tia.pw':443
- 'go###ratia.ru':443
- DNS ASK dp#v.cc
- DNS ASK lr###duct.ru
- DNS ASK kg##p.com
- DNS ASK ta####fpirates.net
- DNS ASK pk#.goog
- DNS ASK pi####king.online
- DNS ASK pi##tia.pw
- DNS ASK go###ratia.ru
- '%APPDATA%\vtettsg'
- '%APPDATA%\vtettsg' ' (со скрытым окном)
- '<SYSTEM32>\taskeng.exe' {0E8C4101-49AF-4F1D-8070-02C2B4FC15EE} S-1-5-21-3150914307-1777937420-491476919-1000:vcpwquytvs\user:Interactive:[1]