Техническая информация
- %LOCALAPPDATA%\microsoft\edge\user data\browsermetrics\browsermetrics-6a38b96e-e30.pma
- %LOCALAPPDATA%\microsoft\edge\user data\browsermetrics\browsermetrics-6a38b972-6bc.pma
- %LOCALAPPDATA%\microsoft\edge\user data\default\manifest-000001
- %LOCALAPPDATA%\microsoft\edge\user data\default\000001.dbtmp
- %LOCALAPPDATA%\microsoft\edge\user data\default\manifest-000002
- %LOCALAPPDATA%\microsoft\edge\user data\default\000002.dbtmp
- %LOCALAPPDATA%\microsoft\edge\user data\default\log
- %LOCALAPPDATA%\microsoft\edge\user data\default\gpucache\index
- %LOCALAPPDATA%\microsoft\edge\user data\default\gpucache\data_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\gpucache\data_2
- %LOCALAPPDATA%\microsoft\edge\user data\default\gpucache\data_3
- %LOCALAPPDATA%\microsoft\edge\user data\default\cookies-journal
- %LOCALAPPDATA%\microsoft\edge\user data\default\cookies
- %LOCALAPPDATA%\microsoft\edge\user data\default\session storage\manifest-000001
- %LOCALAPPDATA%\microsoft\edge\user data\default\session storage\000001.dbtmp
- %LOCALAPPDATA%\microsoft\edge\user data\default\session storage\log
- %LOCALAPPDATA%\microsoft\edge\user data\default\session storage\000003.log
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\index
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\data_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\data_2
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\data_3
- %LOCALAPPDATA%\microsoft\edge\user data\default\shared_proto_db\metadata\manifest-000001
- %LOCALAPPDATA%\microsoft\edge\user data\default\shared_proto_db\metadata\000001.dbtmp
- %LOCALAPPDATA%\microsoft\edge\user data\default\shared_proto_db\metadata\log
- %LOCALAPPDATA%\microsoft\edge\user data\default\shared_proto_db\metadata\000003.log
- %LOCALAPPDATA%\microsoft\edge\user data\default\reporting and nel-journal
- %LOCALAPPDATA%\microsoft\edge\user data\default\reporting and nel
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\c64cb0164a22907a_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\f_000001
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\f1df4328cdaa6129_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\f_000002
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\f_000003
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\09526d4bcdc9e554_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\15fe1a9cc31676a7_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\8bdcd069bc37eda0_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\5f0ab9fe11b1e61e_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\4cf6df116c0bf6b5_0
- %TEMP%\e1f97559-7bc4-4079-9074-ba4cd3b5a65e.tmp
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\ac0a158684fd6b44_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\f_000004
- %LOCALAPPDATA%\microsoft\edge\user data\default\cache\f_000005
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\1a1dfc9c7b8f4299_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\quotamanager-journal
- %LOCALAPPDATA%\microsoft\edge\user data\default\quotamanager
- %LOCALAPPDATA%\microsoft\edge\user data\functional data-wal
- %LOCALAPPDATA%\microsoft\edge\user data\functional san data-wal
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\index-dir\temp-index
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\0406fd47f136efb8_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\code cache\js\b01449702fd9928b_0
- %LOCALAPPDATA%\microsoft\edge\user data\default\manifest-000001
- %LOCALAPPDATA%\microsoft\edge\user data\default\000001.dbtmp в %LOCALAPPDATA%\microsoft\edge\user data\default\current
- %LOCALAPPDATA%\microsoft\edge\user data\default\session storage\000001.dbtmp в %LOCALAPPDATA%\microsoft\edge\user data\default\session storage\current
- %LOCALAPPDATA%\microsoft\edge\user data\default\shared_proto_db\metadata\000001.dbtmp в %LOCALAPPDATA%\microsoft\edge\user data\default\shared_proto_db\metadata\current
- %LOCALAPPDATA%\microsoft\edge\user data\last version
- %LOCALAPPDATA%\microsoft\edge\user data\default\sync data\leveldb\log
- %LOCALAPPDATA%\microsoft\edge\user data\default\site characteristics database\log
- %LOCALAPPDATA%\microsoft\edge\user data\default\sync data\leveldb\000003.log
- %LOCALAPPDATA%\microsoft\edge\user data\default\web data-journal
- %LOCALAPPDATA%\microsoft\edge\user data\default\web data
- %LOCALAPPDATA%\microsoft\edge\user data\default\visited links
- %LOCALAPPDATA%\microsoft\edge\user data\default\history-journal
- %LOCALAPPDATA%\microsoft\tokenbroker\cache\9cd93bc6dcf544bae69531052e64647ec02f2bb4.tbres
- %LOCALAPPDATA%\microsoft\edge\user data\default\history
- %LOCALAPPDATA%\microsoft\edge\user data\default\local storage\leveldb\000003.log
- %TEMP%\.ses
- %LOCALAPPDATA%\Microsoft\Edge\User Data\Default\Local Storage\leveldb\LOG
- %LOCALAPPDATA%\Microsoft\Edge\User Data\Default\Platform Notifications\LOG
- 'localhost':49693
- 'ke##uth.win':443
- 'x1.#.lencr.org':80
- 'x2.#.lencr.org':80
- 'ye.#.lencr.org':80
- 'ye#.#.lencr.org':80
- 'co####.edge.skype.com':443
- 'ti##url.com':443
- 'ni###-link.com':443
- 'fo###.#oogleapis.com':443
- 'ki######.fontawesome.com':443
- 'te##.#lmontsf.com':443
- 'fo###.gstatic.com':443
- 'a.###.#loudflare.com':443
- 'se#######ads.g.doubleclick.net':443
- 'pa#####.#ooglesyndication.com':443
- 're###tcha.net':443
- 'mb##nk.in':443
- 'go######s.g.doubleclick.net':443
- 'cr#.#ectigo.com':80
- 'fundingchoicesmessages.google.com':443
- 'cm.#.##ubleclick.net':443
- '70################c256c756aecc96.safeframe.googlesyndication.com':443
- http://x2.#.lencr.org/
- http://ye.#.lencr.org/
- http://ye#.#.lencr.org/15.crl
- http://cr#.#ectigo.com/SectigoPublicServerAuthenticationRootR46.p7c
- 'localhost':49693
- 'localhost':49694
- 'ke##uth.win':443
- 'co####.edge.skype.com':443
- 'ti##url.com':443
- 'ni###-link.com':443
- 'fo###.#oogleapis.com':443
- 'ki######.fontawesome.com':443
- 'te##.#lmontsf.com':443
- 'fo###.gstatic.com':443
- 'a.###.#loudflare.com':443
- 'se#######ads.g.doubleclick.net':443
- 'pa#####.#ooglesyndication.com':443
- 're###tcha.net':443
- 'mb##nk.in':443
- 'go######s.g.doubleclick.net':443
- 'fundingchoicesmessages.google.com':443
- 'cm.#.##ubleclick.net':443
- '70################c256c756aecc96.safeframe.googlesyndication.com':443
- 'gs##tic.com':443
- DNS ASK ke##uth.win
- DNS ASK x1.#.lencr.org
- DNS ASK x2.#.lencr.org
- DNS ASK ye.#.lencr.org
- DNS ASK ye#.#.lencr.org
- DNS ASK co####.edge.skype.com
- DNS ASK ti##url.com
- DNS ASK ni###-link.com
- DNS ASK fo###.#oogleapis.com
- DNS ASK ki######.fontawesome.com
- DNS ASK te##.#lmontsf.com
- DNS ASK fo###.gstatic.com
- DNS ASK a.###.#loudflare.com
- DNS ASK mb##nk.in
- DNS ASK se#######ads.g.doubleclick.net
- DNS ASK pa#####.#ooglesyndication.com
- DNS ASK re###tcha.net
- DNS ASK go######s.g.doubleclick.net
- DNS ASK cr#.#ectigo.com
- DNS ASK fundingchoicesmessages.google.com
- DNS ASK cm.#.##ubleclick.net
- DNS ASK 70################c256c756aecc96.safeframe.googlesyndication.com
- DNS ASK gs##tic.com
- ClassName: 'Chrome_MessageWindow' WindowName: '%LOCALAPPDATA%\Microsoft\Edge\User Data'
- '<SYSTEM32>\cmd.exe' /c certutil -hashfile "<Полный путь к файлу>" MD5 | find /i /v "md5" | find /i /v "certutil"
- '<SYSTEM32>\certutil.exe' -hashfile "<Полный путь к файлу>" MD5
- '<SYSTEM32>\find.exe' /i /v "md5"
- '<SYSTEM32>\find.exe' /i /v "certutil"
- '%ProgramFiles(x86)%\microsoft\edge\application\msedge.exe' --single-argument https://tinyurl.com/2a8zw5vj
- '%ProgramFiles(x86)%\microsoft\edge\application\msedge.exe' --flag-switches-begin --flag-switches-end --do-not-de-elevate https://tinyurl.com/2a8zw5vj (со скрытым окном)