![]() The process vbc.exe:2816 makes changes in the file system.Ĭ:\Users\"%CurrentUserName%"\AppData\Local\Temp\holdermail.txt (1120 bytes) The HackTool deletes the following file(s):Ĭ:\Users\"%CurrentUserName%"\AppData\Local\Temp\holdermail.txt (0 bytes)Ĭ:\Users\"%CurrentUserName%"\AppData\Local\Temp\holderwb.txt (0 bytes) The HackTool creates and/or writes to the following file(s):Ĭ:\Users\"%CurrentUserName%"\AppData\Roaming\pid.txt (4 bytes)Ĭ:\Users\"%CurrentUserName%"\AppData\Roaming\pidloc.txt (42 bytes)Ĭ:\Users\"%CurrentUserName%"\AppData\Roaming\WindowsUpdate.exe (601 bytes) The process svhost.exe:2096 makes changes in the file system. The following mutexes were created/opened: The HackTool injects its code into the following process(es): The HackTool creates the following process(es): ![]() The autorun script will execute the HackTool's file once a user opens a drive's folder in Windows Explorer. It writes its executable and creates "autorun.inf" scripts on all removable drives.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |