Technical Information
- %TEMP%\a.zip
- %TEMP%\Tor\Data\Tor\geoip
- %TEMP%\Tor\Data\Tor\geoip6
- %TEMP%\Tor\Tor\libeay32.dll
- %TEMP%\Tor\Tor\libevent-2-0-5.dll
- %TEMP%\Tor\Tor\libevent_core-2-0-5.dll
- %TEMP%\Tor\Tor\libevent_extra-2-0-5.dll
- %TEMP%\Tor\Tor\libgcc_s_sjlj-1.dll
- %TEMP%\Tor\Tor\libssp-0.dll
- %TEMP%\Tor\Tor\ssleay32.dll
- %TEMP%\Tor\Tor\tor-gencert.exe
- %TEMP%\Tor\Tor\tor.exe
- %TEMP%\Tor\Tor\zlib1.dll
- %TEMP%\Tor\Tor\torrc
- %APPDATA%\tor\state.tmp
- %TEMP%\a.zip
- from %APPDATA%\tor\state.tmp to %APPDATA%\tor\state
- 'localhost':1039
- '16#.#72.223.200':443
- '12#.31.0.39':9101
- '17#.#6.208.59':443
- '21#.#39.217.18':1337
- '13#.#88.40.189':443
- '91.##9.237.229':443
- '16#.#72.149.122':443
- 'localhost':9050
- '86.#9.21.38':443
- '64.##3.32.29':9001
- '%TEMP%\Tor\Tor\tor.exe'