Техническая информация
- Процесс hxceyo.exe, модуль ntdll.dll
- ClassName: 'RegmonClass', WindowName: ''
- ClassName: 'FilemonClass', WindowName: ''
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- %HOMEPATH%\documents\t.dll
- %LOCALAPPDATA%\microsoft\clr_v4.0\usagelogs\t.dll.log
- %HOMEPATH%\documents\t.dll
- 'ap#.auth.gg':443
- 'ap#.auth.gg':443
- DNS ASK ap#.auth.gg
- ClassName: 'Registry Monitor - Sysinternals: www.sysinternals.com' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- ClassName: 'File Monitor - Sysinternals: www.sysinternals.com' WindowName: ''
- ClassName: 'Process Monitor - Sysinternals: www.sysinternals.com' WindowName: ''
- '%HOMEPATH%\documents\t.dll'
- '<SYSTEM32>\cmd.exe' /c %HOMEPATH%\Documents\t.dll