Техническая информация
- <SYSTEM32>\tasks\firefox default browser agent e3824ce5d6f6a399
- %WINDIR%\explorer.exe
- bgahges
- %APPDATA%\bgahges
- %APPDATA%\bgahges
- 'ho####ile-host6.com':80
- http://ho####ile-host6.com/
- DNS ASK ho####ile-host6.com
- '%APPDATA%\bgahges'
- '<SYSTEM32>\taskeng.exe' {A970E578-1F45-430F-93FF-B0BEF285A97C} S-1-5-21-3691498038-2086406363-2140527554-1000:uqlnxd\user:Interactive:[1]
- '%APPDATA%\bgahges' (со скрытым окном)