ioc-collection/HackBoss/file_names.txt

28 lines
1.1 KiB
Plaintext

%APPDATA%\Local\Temp\1qw23.exe
%APPDATA%\Local\Temp\DavzZL\MSASCui.exe
%APPDATA%\Local\Temp\MSASCui.exe
%APPDATA%\Local\Temp\RuntimeBroker.exe
%APPDATA%\Local\Temp\SecurityHelth.exe
%APPDATA%\Local\Temp\vbgujr7v.exe
%APPDATA%\Roaming\AdobeX\UserAccountControlSettings.exe
%APPDATA%\Roaming\AdobeX\flashplayer.exe
%APPDATA%\Roaming\Defender\DefenderUpdate.exe
%APPDATA%\Roaming\Defender\MSASCui.exe
%APPDATA%\Roaming\FlashPlayer\FlashPlayer.exe
%APPDATA%\Roaming\Health\SecurityHealthSystray.exe
%APPDATA%\Roaming\NVIDIA\SecurityHealth.exe
%APPDATA%\Roaming\Protect\WmiPrve.exe
%APPDATA%\Roaming\Realtek\SearchProtocolHost.exe
%APPDATA%\Roaming\Realtek\SecurityHealth.exe
%APPDATA%\Roaming\Security\SecurityHealth.exe
%APPDATA%\Roaming\System\DXCpl.exe
%APPDATA%\Roaming\System\splwow.exe
%APPDATA%\Roaming\WIND0WS\Explorer.exe
%APPDATA%\Roaming\WIND0WS\FlashPlayer.exe
%APPDATA%\Roaming\WIND0WS\User.exe
%APPDATA%\Roaming\WIND0WS\UserAccountControlSettings.exe
%APPDATA%\Roaming\WINDDWS\Winserv.exe
%APPDATA%\Roaming\WinSecurityHealth\SecurityHealth.exe
%APPDATA%\Roaming\WmiPrv\WmiPrvSE.exe
%APPDATA%\Roaming\dftmp\SecurityHealth.exe
%APPDATA%\Roaming\p60fhh\Flash.exe