Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Sample: 62688903adfc719c5514f25a17563547aac4801959852f5d49faa93967ce86cf
- Kernel32.dll
- ntdll.dll
- cmdvrt32.dll:SxIn.dll:snxhk.dll:sbiedll.dll:api_log.dll:pstorec.dll:wpespy.dll
- \\.\pipe\cuckoo:\\.\HGFS:\\.\vmci
- ReadProcessMemory
- service-logmeln.network
- Software\\\Microsoft\\\Windows NT\\\CurrentVersion
- Software\\\Microsoft\\\Windows\\\CurrentVersion
- Software\\\Microsoft\\\Windows\\\CurrentVersion\\\Run
- HARDWARE\\\DESCRIPTION\\\System\\\CentralProcessor\\\0
- LogMeInSvcd
- ;4000000000000002=19011010000012300000?
- LogMeInUpdService
- logmeinusvc.exe
- logmeinumon.exe
- hdwid.dat
- udwupd.kdl
- .dat
- PCi.jp
- sinf.dat
- SYSTEM
- .trp
- .info
- .ping
- [IP :
- ] - String found in:
- [NS:IP
- FILEBEGIN
- FILEEND
- /index.php?udpool=
- UnknownIP
- Broser
- GET
- LogmeinUpgradeServices
- LogMeIn Upgrade Services
- \System32\
- \SysWOW64\
- %APPDATA%
- C:\
- PCNAME:UNKNOWN
- USER:UNKNOWN
- 1111
- 3zjRe4tYUl(g
- 0123456789
- 0123456789 /^
- explorer.exe
- System
- [System Process]
- taskhostex.exe
- opera.exe
- firefox.exe
- chrome.exe
- winlogon.exe
- wininit.exe
- taskmgr.exe
- csrss.exe
- lsass.exe
- smss.exe
- services.exe
- svchost.exe
- ctfmon.exe
- spoolsv.exe
- lsm.exe
- IPROSetMonitor.exe
- .bat
- SET
- if not exist %
- % mkdir %
- TASKKILL /F /IM %
- if exist %
- % del /F /Q %
- del /F /Q %
- copy %
- % %
- START "" %
- sc start
- net view >
- net view /domain >
- ipconfig /all >
- arp -a >
- route PRINT >
- nbtstat /n >
- systeminfo >
- tasklist /v /fo "TABLE" >
- copy *
- del /F /Q
- del /F /Q "
- infobat
- .csv
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement