Техническая информация
- msedge.exe
- %LOCALAPPDATA%\microsoft\edge\user data\default\web data
- %LOCALAPPDATA%\google\chrome\user data\default\web data
- %HOMEPATH%\desktop\508softwareandos.doc
- %HOMEPATH%\desktop\contoso.cer
- %HOMEPATH%\desktop\dashborder_120.bmp
- %HOMEPATH%\desktop\dashborder_192.bmp
- %HOMEPATH%\desktop\dashborder_96.bmp
- %HOMEPATH%\desktop\dial.bmp
- %HOMEPATH%\desktop\dialmap.bmp
- %HOMEPATH%\desktop\join.avi
- %HOMEPATH%\desktop\pmd.cer
- %HOMEPATH%\desktop\testee.cer
- %APPDATA%\mozilla\firefox\profiles.ini
- %APPDATA%\opera software\opera stable\login data
- %APPDATA%\thunderbird\profiles.ini
- %TEMP%\windowsupdate_2976.exe
- %TEMP%\log.txt
- %TEMP%\pwd_2872.db
- %TEMP%\tmp422.tmp
- %TEMP%\windowsupdate_2976.exe
- %TEMP%\tmp422.tmp
- 't.#e':443
- 'ap#.####dflareclient.com':443
- 'ia###ubyag.ru':8880
- /fa3c16365fd0d67f6035f379df7a375ebe1aa51e99a2dde0db92c906ed003a70 via ia###ubyag.ru
- 'ap#.####dflareclient.com':443
- 'ia###ubyag.ru':8880
- DNS ASK t.#e
- DNS ASK ap#.####dflareclient.com
- DNS ASK ia###ubyag.ru
- '%TEMP%\windowsupdate_2976.exe'
- '%ProgramFiles(x86)%\microsoft\edge\application\msedge.exe'
- '%TEMP%\windowsupdate_2976.exe' (со скрытым окном)