Техническая информация
- <SYSTEM32>\svchost.exe
- %WINDIR%\explorer.exe
- <SYSTEM32>\securityhealthsystray.exe
- <SYSTEM32>\oobe\useroobebroker.exe
- <SYSTEM32>\slui.exe
- iexplore.exe
- firefox.exe
- Процесс iexplore.exe, модуль advapi32.dll
- Процесс firefox.exe, модуль advapi32.dll
- Процесс xufgyos.exe, модуль Amsi.dll
- '45.##4.98.20':8443
- '45.##4.98.20':8443
- '<SYSTEM32>\cmd.exe' /c wmic /namespace:\\root\SecurityCenter2 path AntiVirusProduct get displayName /format:list
- '<SYSTEM32>\wbem\wmic.exe' /namespace:\\root\SecurityCenter2 path AntiVirusProduct get displayName /format:list