Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent 7e4613e60169341b
- %APPDATA%\frvewuv
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\metadata\f0accf77cdcbff39f6191887f6d2d357
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\content\f0accf77cdcbff39f6191887f6d2d357
- %APPDATA%\frvewuv
- 'gx##c2c.com':80
- 'pr##kt8.ru':80
- 'pi####king.online':80
- 'pi####king.online':443
- 'pi##tia.pw':80
- 'pi##tia.pw':443
- http://gx##c2c.com/tmp/index.php
- http://pr##kt8.ru/tmp/index.php
- http://pi####king.online/tmp/index.php
- http://pi##tia.pw/tmp/index.php
- 'pi####king.online':443
- 'pi##tia.pw':443
- DNS ASK gx##c2c.com
- DNS ASK pr##kt8.ru
- DNS ASK mt#.com.ua
- DNS ASK pi####king.online
- DNS ASK pi##tia.pw
- '%APPDATA%\frvewuv'
- '%APPDATA%\frvewuv' ' (со скрытым окном)
- '<SYSTEM32>\taskeng.exe' {96D172C8-638F-428E-926B-5EC57CACCA01} S-1-5-21-1238866942-1249195528-555854008-1000:gnvocvmgyd\user:Interactive:[1]