Technical Information
- <SYSTEM32>\tasks\ГЇВµГ³èõà úГ¬²½
- %WINDIR%\temp\cabf0d.tmp
- %WINDIR%\temp\tarf0e.tmp
- %WINDIR%\temp\cab4a1b.tmp
- %WINDIR%\temp\tar4a1c.tmp
- %WINDIR%\temp\cab77c2.tmp
- %WINDIR%\temp\tar77c3.tmp
- %WINDIR%\logs\wc.jpg
- %WINDIR%\logs\erp.exe
- %WINDIR%\logs\cb.txt
- %WINDIR%\logs\a6.txt
- %WINDIR%\logs\nw_elf.dll
- %LOCALAPPDATA%\crashpad\settings.dat
- %WINDIR%\temp\cabf0d.tmp
- %WINDIR%\temp\tarf0e.tmp
- %WINDIR%\temp\cab4a1b.tmp
- %WINDIR%\temp\tar4a1c.tmp
- %WINDIR%\temp\cab77c2.tmp
- %WINDIR%\temp\tar77c3.tmp
- 'localhost':49185
- 'localhost':49187
- 'he#####.####rg-china-mainland.aliyuncs.com':443
- 'localhost':49193
- 'localhost':49195
- 'he#####.####rg-china-mainland.aliyuncs.com':80
- '45.##.77.122':6623
- http://he#####.####rg-china-mainland.aliyuncs.com/yaho/shay.jpg
- 'localhost':49185
- 'localhost':49187
- 'localhost':49188
- 'he#####.####rg-china-mainland.aliyuncs.com':443
- 'localhost':49193
- 'localhost':49195
- 'localhost':49196
- '45.##.77.122':6623
- DNS ASK he#####.####rg-china-mainland.aliyuncs.com
- '%WINDIR%\logs\erp.exe'
- '%WINDIR%\logs\erp.exe' --type=crashpad-handler /prefetch:7 --no-rate-limit --database=%LOCALAPPDATA%\Crashpad --annotation=channel= --annotation=plat=Win32 --annotation=prod=书生ERP --annotation=ver=-devel --handshake-...