Техническая информация
- msedge.exe
- firefox.exe
- firefox.exe
- %TEMP%\.net\<Имя файла>\10a4\e_sqlite3.dll
- %TEMP%\nf_fx_1777602420475.sqlite
- %TEMP%\nf_fx_1777602420475.sqlite-shm
- %TEMP%\mscredentials\sess_1777602420107\discord tokens.txt
- %TEMP%\microsoft\identitycrl\production\msvc_provider.exe
- %TEMP%\mscredentials\sess_1777602420107\system info.txt
- %TEMP%\browsers_1777602424739.zip
- %TEMP%\microsoft\identitycrl\production\msvc_provider.exe
- %TEMP%\browsers_1777602424739.zip
- %TEMP%\mscredentials\sess_1777602420107\discord tokens.txt
- %TEMP%\mscredentials\sess_1777602420107\system info.txt
- 'x1.#.lencr.org':80
- http://x1.#.lencr.org/
- 'l8##ca.xyz':443
- 'ip##i.co':443
- '1.#.1.1':443
- DNS ASK l8##ca.xyz
- DNS ASK x1.#.lencr.org
- DNS ASK ip##i.co
- '%TEMP%\microsoft\identitycrl\production\msvc_provider.exe' -o "%TEMP%\Vault\Svc_1777602421443" all
- '%ProgramFiles(x86)%\microsoft\edge\application\msedge.exe'
- '%ProgramFiles%\mozilla firefox\firefox.exe' -no-remote -headless
- '%TEMP%\microsoft\identitycrl\production\msvc_provider.exe' -o "%TEMP%\Vault\Svc_1777602421443" all (со скрытым окном)