Technical Information
- <SYSTEM32>\tasks\test01
- %CommonProgramFiles(x86)%\installserverinfo.dat
- %CommonProgramFiles(x86)%\test\system.threading.timer.dll
- %CommonProgramFiles(x86)%\test\system.valuetuple.dll
- %CommonProgramFiles(x86)%\test\system.threading.threadpool.dll
- %CommonProgramFiles(x86)%\test\system.threading.thread.dll
- %CommonProgramFiles(x86)%\test\system.threading.tasks.parallel.dll
- %CommonProgramFiles(x86)%\test\system.threading.tasks.dll
- %CommonProgramFiles(x86)%\test\system.threading.overlapped.dll
- %CommonProgramFiles(x86)%\test\system.threading.dll
- %CommonProgramFiles(x86)%\test\system.text.regularexpressions.dll
- %CommonProgramFiles(x86)%\test\system.text.encoding.extensions.dll
- %CommonProgramFiles(x86)%\test\system.text.encoding.dll
- %CommonProgramFiles(x86)%\test\system.security.securestring.dll
- %CommonProgramFiles(x86)%\test\system.security.principal.dll
- %CommonProgramFiles(x86)%\test\system.security.cryptography.x509certificates.dll
- %CommonProgramFiles(x86)%\test\system.security.cryptography.primitives.dll
- %CommonProgramFiles(x86)%\test\system.xml.readerwriter.dll
- %CommonProgramFiles(x86)%\test\system.security.cryptography.csp.dll
- %CommonProgramFiles(x86)%\test\system.security.cryptography.algorithms.dll
- %CommonProgramFiles(x86)%\test\system.security.claims.dll
- %CommonProgramFiles(x86)%\test\system.runtime.serialization.xml.dll
- %CommonProgramFiles(x86)%\test\system.runtime.serialization.primitives.dll
- %CommonProgramFiles(x86)%\test\system.runtime.serialization.json.dll
- %CommonProgramFiles(x86)%\test\system.runtime.serialization.formatters.dll
- %CommonProgramFiles(x86)%\test\system.runtime.numerics.dll
- %CommonProgramFiles(x86)%\test\system.runtime.interopservices.runtimeinformation.dll
- %CommonProgramFiles(x86)%\test\system.runtime.interopservices.dll
- %CommonProgramFiles(x86)%\test\system.runtime.handles.dll
- %CommonProgramFiles(x86)%\test\system.runtime.extensions.dll
- %CommonProgramFiles(x86)%\test\system.runtime.dll
- %CommonProgramFiles(x86)%\test\system.security.cryptography.encoding.dll
- %CommonProgramFiles(x86)%\test\system.linq.queryable.dll
- %CommonProgramFiles(x86)%\test\system.xml.xmldocument.dll
- %CommonProgramFiles(x86)%\test\networkminer.exe
- %CommonProgramFiles(x86)%\test\networkminer.exe.config
- %CommonProgramFiles(x86)%\test\changelog
- %CommonProgramFiles(x86)%\test\packetparser.dll
- %CommonProgramFiles(x86)%\test\networkwrapper.dll
- %CommonProgramFiles(x86)%\test\images\white.gif
- %CommonProgramFiles(x86)%\test\images\unix.gif
- %CommonProgramFiles(x86)%\test\images\windows.jpg
- %CommonProgramFiles(x86)%\test\images\white.jpg
- %CommonProgramFiles(x86)%\test\images\unix.jpg
- %CommonProgramFiles(x86)%\test\images\solaris.jpg
- %CommonProgramFiles(x86)%\test\images\network_card.jpg
- %CommonProgramFiles(x86)%\test\images\netbsd.jpg
- %CommonProgramFiles(x86)%\test\images\details.gif
- %CommonProgramFiles(x86)%\test\system.runtime.compilerservices.visualc.dll
- %CommonProgramFiles(x86)%\test\system.xml.xdocument.dll
- %CommonProgramFiles(x86)%\test\images\linux.jpg
- %CommonProgramFiles(x86)%\test\images\iana.jpg
- %CommonProgramFiles(x86)%\test\images\freebsd.jpg
- %CommonProgramFiles(x86)%\test\images\computer.jpg
- %CommonProgramFiles(x86)%\test\images\cisco.jpg
- %CommonProgramFiles(x86)%\test\images\arrow_outgoing.jpg
- %CommonProgramFiles(x86)%\test\images\arrow_received.jpg
- %CommonProgramFiles(x86)%\test\images\arrow_sent.jpg
- %CommonProgramFiles(x86)%\test\images\broadcast.jpg
- %CommonProgramFiles(x86)%\test\images\android.jpg
- %CommonProgramFiles(x86)%\test\images\arrow_incoming.jpg
- %CommonProgramFiles(x86)%\test\cleartexttools\all-words.txt
- %CommonProgramFiles(x86)%\test\system.xml.xpath.xdocument.dll
- %CommonProgramFiles(x86)%\test\system.xml.xpath.dll
- %CommonProgramFiles(x86)%\test\images\macos.jpg
- %CommonProgramFiles(x86)%\test\system.xml.xmlserializer.dll
- %CommonProgramFiles(x86)%\test\system.resources.writer.dll
- %CommonProgramFiles(x86)%\test\system.resources.resourcemanager.dll
- %CommonProgramFiles(x86)%\test\system.resources.reader.dll
- %CommonProgramFiles(x86)%\test\system.componentmodel.eventbasedasync.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.tracesource.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.tracing.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.tools.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.textwritertracelistener.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.process.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.stacktrace.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.fileversioninfo.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.debug.dll
- %CommonProgramFiles(x86)%\test\system.diagnostics.contracts.dll
- %CommonProgramFiles(x86)%\test\system.data.common.dll
- %CommonProgramFiles(x86)%\test\system.componentmodel.primitives.dll
- %CommonProgramFiles(x86)%\test\system.console.dll
- %CommonProgramFiles(x86)%\test\system.componentmodel.dll
- <Current directory>\installutil.installlog
- %CommonProgramFiles(x86)%\test\system.dynamic.runtime.dll
- %CommonProgramFiles(x86)%\test\system.collections.specialized.dll
- %CommonProgramFiles(x86)%\test\system.appcontext.dll
- %CommonProgramFiles(x86)%\test\microsoft.win32.primitives.dll
- %CommonProgramFiles(x86)%\test\system.collections.dll
- %CommonProgramFiles(x86)%\test\system.collections.concurrent.dll
- %CommonProgramFiles(x86)%\test\system.collections.nongeneric.dll
- %CommonProgramFiles(x86)%\test\netstandard.dll
- %CommonProgramFiles(x86)%\test\fingerprints\p0f.fp.netsa
- %CommonProgramFiles(x86)%\test\fingerprints\p0fa.fp
- %CommonProgramFiles(x86)%\test\fingerprints\etter.finger.os
- %CommonProgramFiles(x86)%\test\fingerprints\p0f.fp
- %CommonProgramFiles(x86)%\test\fingerprints\dhcp.xml
- %CommonProgramFiles(x86)%\test\fingerprints\tcp.xml
- %CommonProgramFiles(x86)%\test\fingerprints\oui.txt
- %CommonProgramFiles(x86)%\test\system.componentmodel.typeconverter.dll
- %CommonProgramFiles(x86)%\test\images\multicast.jpg
- %CommonProgramFiles(x86)%\test\system.globalization.calendars.dll
- %CommonProgramFiles(x86)%\test\system.io.compression.dll
- %CommonProgramFiles(x86)%\test\system.globalization.dll
- %CommonProgramFiles(x86)%\test\system.reflection.primitives.dll
- %CommonProgramFiles(x86)%\test\system.reflection.extensions.dll
- %CommonProgramFiles(x86)%\test\system.reflection.dll
- %CommonProgramFiles(x86)%\test\system.objectmodel.dll
- %CommonProgramFiles(x86)%\test\system.net.websockets.dll
- %CommonProgramFiles(x86)%\test\system.net.websockets.client.dll
- %CommonProgramFiles(x86)%\test\system.net.webheadercollection.dll
- %CommonProgramFiles(x86)%\test\system.net.sockets.dll
- %CommonProgramFiles(x86)%\test\system.net.security.dll
- %CommonProgramFiles(x86)%\test\system.net.requests.dll
- %CommonProgramFiles(x86)%\test\system.net.primitives.dll
- %CommonProgramFiles(x86)%\test\system.net.ping.dll
- %CommonProgramFiles(x86)%\test\system.net.networkinformation.dll
- %CommonProgramFiles(x86)%\test\system.globalization.extensions.dll
- %CommonProgramFiles(x86)%\test\system.net.nameresolution.dll
- %CommonProgramFiles(x86)%\test\system.drawing.primitives.dll
- %CommonProgramFiles(x86)%\test\system.linq.parallel.dll
- %CommonProgramFiles(x86)%\test\system.linq.expressions.dll
- %CommonProgramFiles(x86)%\test\system.linq.dll
- %CommonProgramFiles(x86)%\test\system.io.unmanagedmemorystream.dll
- %CommonProgramFiles(x86)%\test\system.io.pipes.dll
- %CommonProgramFiles(x86)%\test\system.io.memorymappedfiles.dll
- %CommonProgramFiles(x86)%\test\system.io.isolatedstorage.dll
- %CommonProgramFiles(x86)%\test\system.io.filesystem.watcher.dll
- %CommonProgramFiles(x86)%\test\system.io.filesystem.primitives.dll
- %CommonProgramFiles(x86)%\test\system.io.filesystem.driveinfo.dll
- %CommonProgramFiles(x86)%\test\system.io.filesystem.dll
- %CommonProgramFiles(x86)%\test\system.io.dll
- %CommonProgramFiles(x86)%\test\system.io.compression.zipfile.dll
- %CommonProgramFiles(x86)%\test\system.net.http.dll
- %CommonProgramFiles(x86)%\test\networkminer.installlog
- '45.##.241.210':443
- '<SYSTEM32>\schtasks.exe' /Create /SC ONLOGON /TN test01 /TR "%WINDIR%\MICROS~1.NET\FRAMEW~2\V40~1.303\INSTAL~1.EXE \U C:\PROGRA~2\COMMON~1\test\NETWOR~1.EXE" /F /RU "" /DELAY 0000:30 /RL HIGHEST' (with hidden window)
- '%WINDIR%\Microsoft.NET\Framework64\v4.0.30319\InstallUtil.exe' /U C:\PROGRA~2\COMMON~1\test\NETWOR~1.EXE' (with hidden window)
- '<SYSTEM32>\schtasks.exe' /Create /SC ONLOGON /TN test01 /TR "%WINDIR%\MICROS~1.NET\FRAMEW~2\V40~1.303\INSTAL~1.EXE \U C:\PROGRA~2\COMMON~1\test\NETWOR~1.EXE" /F /RU "" /DELAY 0000:30 /RL HIGHEST
- '%WINDIR%\Microsoft.NET\Framework64\v4.0.30319\InstallUtil.exe' /U C:\PROGRA~2\COMMON~1\test\NETWOR~1.EXE