Техническая информация
- C:\signcode.exe -spc C:\QQ01.spc -k QQqianming -t http://ti#####mp.verisign.com/scripts/timstamp.dll C:\boot.lnk
- C:\cert2spc.exe C:\QQ01.cer C:\QQ01.spc
- C:\makecert.exe -sk "QQqianming" -is myName -n "CN=Tencent Technology(Shenzhen) Company Limited" -$ commercial -ic C:\QQ00.cer C:\QQ01.cer -sk QQqianming -ss myName -n "CN=VeriSign Class 3 Code Signing 2004 CA" -r C:\QQ00.cer
- <SYSTEM32>\cmd.exe /c ""C:\AddSign.bat" "
- <SYSTEM32>\rundll32.exe cryptext.dll,CryptExtAddCER C:\QQ00.cer
- <SYSTEM32>\cmd.exe /c ""C:\BuildSign.bat" "
- <SYSTEM32>\ping.exe 127.0.0.1 -n 5
- C:\QQ01.spc
- C:\QQ01.cer
- C:\QQ00.cer
- C:\boot.lnk
- C:\AddSign.bat
- C:\signcode.exe
- %APPDATA%\Microsoft\Crypto\RSA\S-1-5-21-1275210071-117609710-1801674531-500\d7b13a577cf1eb34ab2e2358df0a4f63_ffcb838e-6d3b-4e44-a259-8ac8f5c94c4f
- C:\cert2spc.exe
- %HOMEPATH%\Start Menu\Programs\XNM\XXX.hta
- C:\Inst.\Inst.exe
- %APPDATA%\Microsoft\Protect\S-1-5-21-1275210071-117609710-1801674531-500\7484817b-4636-4fbb-a042-e54f59788d1b
- C:\BuildSign.bat
- C:\makecert.exe
- 'ti#####mp.verisign.com':80
- ti#####mp.verisign.com/scripts/timstamp.dll
- DNS ASK ti#####mp.verisign.com
- ClassName: 'Desktop More Programs Pane' WindowName: ''
- ClassName: 'SysHeader32' WindowName: ''
- ClassName: 'Button' WindowName: ''
- ClassName: '#32770' WindowName: '????????????'
- ClassName: '#32770' WindowName: '????????'
- ClassName: '' WindowName: '????'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'DV2ControlHost' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'DesktopSFTBarHost' WindowName: ''