Technical Information
- '<SYSTEM32>\taskkill.exe' /f /im AlphaAgent.exe
- '<SYSTEM32>\taskkill.exe' /f /im AlphaAgentConfig.exe
- '<SYSTEM32>\net.exe' stop uvnc_service
- '<SYSTEM32>\net.exe' stop "AlphaControl Remote Access Service"
- %TEMP%\RarSFX0\unity.ico
- %TEMP%\RarSFX0\install.bat
- %TEMP%\RarSFX0\latest_agent.exe
- %TEMP%\is-IB4ET.tmp\latest_agent.tmp
- %TEMP%\is-3ETRA.tmp\_isetup\_RegDLL.tmp
- %TEMP%\is-3ETRA.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-3ETRA.tmp\isxdl.dll
- ClassName: 'EDIT' WindowName: ''
- ClassName: '' WindowName: ''
- '%TEMP%\RarSFX0\latest_agent.exe' /VERYSILENT
- '%TEMP%\is-IB4ET.tmp\latest_agent.tmp' /SL5="$10106,870321,137728,%TEMP%\RarSFX0\latest_agent.exe" /VERYSILENT
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\RarSFX0\install.bat" 83.161.137.201"
- '<SYSTEM32>\reg.exe' ADD "HKLM\SOFTWARE\ATERA Networks\AlphaAgent" /v AlphaControlHost /t REG_SZ /d 83.161.137.201 /f
- '<SYSTEM32>\net1.exe' stop uvnc_service
- '<SYSTEM32>\net1.exe' stop "AlphaControl Remote Access Service"