Skip to content

Instantly share code, notes, and snippets.

@hasherezade
Created June 6, 2017 17:54
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save hasherezade/de2df50e5a596ec436bd8e8007489016 to your computer and use it in GitHub Desktop.
Save hasherezade/de2df50e5a596ec436bd8e8007489016 to your computer and use it in GitHub Desktop.
LatentBot - decoded resources of the "Security" module
kdc
cnt
ppl
lrm
nup
sig
dwl
vdb
avz
scd3ei
dta
avg;
blockpost
avp
vbt
dws
pydo#
avct
*comodo\
*\comodo
*xCore\
*\xCore
*xCoreAv\b
*\SpybotV
*\Malwarebytes
*\avz
*\Online Solutions
*\STOPzilla
*\Quick Heal*
*\\Emsisoft Anti-Malware
*\Ad-Aware
*AdAware9
*\IObit\1u
*\Ashampoo\
*\Arovax
*\Auslogics
*\AVASTRhU
*Micro\Titanium
*\AVG\
*\eScan
*\Avira\
vdfz
avs
*\BitDefender\
*\CounterSpy\
*\BullGuard
*\DrWeb\
*\ESET\
*Sniffer\
*\Sniffer
*Outpost
*\Agnitum\
*sandboxC
*\Emsisoft
*\F-PROT
*hitmanpro
*\HitmanPro\f
*\HTTPAnalyzer
*F-Secure
*\G Data\
*K7TSecurity
dsm
*\Kerish Doctor\
*\MSDL-MSDLAV\
*\OSAM\
*\OSSS\
*\PC Tools
*\InCode Solutions\
*\Norton Internet Security\
*\Panda Security\]
*\PCKAV\
*\IKARUS\
*\SpyShelterg
*\Spyware
*\Stronghold Antivirus\
*\VIPRE\|
*\SUPERAntiSpyware\
*\TrustPort\
*\Trend Micro Installer\
*\Twister\b
*\UnThreat AntiVirus\
*\Vba32\
*\Protector Plus\U
*\WinPatrol\
*\Fighters\
*\Webroot\
*\XoftSpy\
*\Zillya
*\ZoneAlarm\
*\Trend Micro\
FireLog.exe
procexp.exe
Procmon.exe
Tcpview.exe
xCoreAV.exe
xCoreFirewallSvc.exe
xCoreLib.dll
corefw.dll
SpybotSD.exe
gmer.exe
SysInspector.exe
avz.exe
ProcessHacker.exe
osam.exe
osam_gui.dll
osam_srv.dll
HijackThis.exe
sbapifs.sys
sbaphd.sys
STOPzilla.exe
IS3Updater.exe
wscControlSZ.exe
SZScanner.exe
QHAVFT32.EXE
QHAVFT64.EXE
ASCLSRVC.EXE
ScSecSvc.exe
tdsskiller.exe
avengine.dll
kavsys.kdl
kldw.exe
cureit.exe
pctMigrate.dll
pctsMetro.dll
PCTSFiles.exe
pctsGui.exe
pctsSvc.exe
sdinvoker.exe
sdloader.exe
a2HiJackFree.exe
a2guard.exeu
a2updateproxy.exe
a2service.exe
a2start.exe7
a2accx64.sys
a2accx86.sys
a2ddax64.sys
a2ddax86.sys
a2dix64.sys
a2dix86.sys
a2engine.dll
AdAwareCommandLine.exe
SecurityCenter.dll
AntivirusSettings.exe
ASCAntivirus.exe
ASCAvSvc.exe
Suo12_StartupManager.exe
IWsASC.exe
AAV_Main.exe
AAV_Guard.exe
ArovaxShield.exe
AsrPro.exe
aKiller.dll
auslogicsuninstalltool.exe
bdsandboxuiskin.dll
obkch.exe
odscanui.exe
seccenter.exe
avc3.sys
autoruns.gvm
avchv.sys
AavmRpch.dll
ashMaiSv.dll
aswChLic.exe
aswJSScan.dll
AvastEmUpdate.exe
avastSS.dll
AvastUI.exe
AvSSHook.dll
VisthAux.exe
avpmain.dll
avpinst.dll
avpinit.dll
klifpp.dll
ksn_client.dll
uiWinMg.exe
utilAccessControl.dll
utilThread.dll
avgadvisorx.dll
avgcfgex.exe
avgfws.exe
avgmfapx.exe
avgcsrvx.exe
avgrsx.exe
avgwdsvc.exe
avgui.exe
TiMiniServic.exe
avesvc.dll
avesvcr.dll
avevtrc.dll
avgntflt.sys
avipbb.sys
avkmgr.sys
avscanrc.dll
avsda64.dll
avupgsvc.exe
avscan.exe
avwsc.exe
avckf.sys
avcwhl.avs
avdisk32.sys
avdisk64.sys
econceal.sys
econceal.vista32.sys
escanpro.exe
scanremv.exe
bdsandbox_svchost.exe
sbamwsc.exe
SBAMCommandLineScanner.exe
BgScan.exe
BgScanEngine.dll
BgSecErase.exe
BsFileScan.dll
BullGuard.exe
BullGuardBhvScanner.exe
BullGuardScanner.exe
drweblwf.sys
dw_wfp.sys
dwprot.sys
dwscanner.exe
dwservice.exe
frwl_svc.exe
spiderg3.sys
eamon.sys
edevmon.sys
ehdrv.sys
EpfwTdiR.sys
eguiEmon.dll
eguiScan.dll
ekrnAmon.dll
ekrnScan.dll
eplgOEEmon.dll
EHSniffer.exe
op_mon.exe
a2core32.dll
a2core64.dll
a2dix86.dll
FStopW.sys
defhandler_client_mod.dll
fptrayproc.exe
oacat.exe
OAnet.sys
hitmanpro37.sys
HttpAnalyzerStdV5.exe
HttpAnalyzerFFAutoV5.dll
IEHTTPAnalyzerV5.dll
InjectWinSockServiceV5.exe
qhInjectDrv32.sys
qhInjectDrv64.sys
fs_ccf_action_center_api_32.dll
fs_ccf_action_center_api_64.dll
AVKScanJobC.dll
AVKService.exe
GDGadgetInst32.exe
K7FWHlpr.sys
K7RKScan.sys
K7Sentry.sys
K7TdiHlp.sys
K7AVMScn.dll
K7SysMon.Exe
KerishDoctor.exe
bdnimbus64.dll
MWAVL.exe
mwavscan.exe
ScanningProcess.exe
viewtcp.exe
mpfilter.sys
NisDrvWFP.sys
NisSrv.exe
SymSrv.dll
msseces.exev
osss_gui.dll
osss_srv.exe
PCTSecUtility.dll
PCTCFHook.dll
pctsAuxs.exe
removeit.exe
asEngine.dll
AVModule.dll
AVPSVC32.dll
avScanUI.dll
avScnTsk.dll
ccScanW.dll'
ccVrTrst.dll
FWCore.dll
Navw32.exe
SymDgnHC.exe
apflctrlNT.dll
dsaflt.sys%?
fnetmon.sysB
idsflt.sys
Netfltdi.sys
NETI1644.sys
wnmflt.sys
avciman.exe
amm8651.sys@cy
RKPavProc.sysK
AntivirusServiceLibrary.dll9>
PCKAV.exe
PCKAVCore.dll
PCKAVService.exe
PCKAVServiceCore.dlls#
PCKAVServicePS.dll
zeoscanner.sys
ActiveShield5.exe
guardxservice.exe5
ikmapi.dll
ikproc_x64.dll
virusutilities.exe
SpyShelter.exe
RsltView.exe
SpyShelter.sys
SpywareTerminator.exe
SpywareTerminatorShield.exe
st_rsser.exe
sp_rsdrv2.sys
systemrestore.exe
analyzefile.exe
sbapifsl.sys
gfiark32.sys
gfiark64.sys
gfiutl32.sys
gfiutl64.sys
SBPIMSvc.exe|
StrongholdAntivirus.exe
StrongholdAntivirus64.sys
StrongholdAntivirusFirewall64.sys
StrongholdAntivirus.sys
StrongholdAntivirusFirewall.sys
StrongholdAntivirusService.exe
WindowsScan.dll
TrueSword5.exe
TrueSwordSchedule.exe
PreventCloseDriver.sys
dsio.sys
tpsctrl.exen
avgcorex.dll
avxs.dll
bdcore.dll
tppfhook.sys
tdimapper.sys
ffsmon.sys
fildds.sys
filmfd.sys
filppd.sys
ffsmon.vxd
ffsmon4.sys
quarantine.dll
schmgr.exe
SbFwe.dll
SbHips.dll
UnThreat.exe
utsvc.exe
vipre.dll
SbFwIm.sys
sbfw.sys
SBRC.exe
Vba32Act.exe
Vba32arkit.exe
Vba32mNT.sys
Vba32w.exe
PPAVMON.exe
PPDRV.SYs
PPEMSCAN.SYS
FighterSuiteService.exe
WRSA.exe
zillya.exe
TaskManagerTool.exe
ZavCore.exeF
ZavAux.exe
AutoRunTool.exe
Znf.sys
Zsc.sys
vsdatant.sys
zlavscan.dll
%SYS_DISK%:\Program Files\Online Solutions
%SYS_DISK%:\Program Files\AnVir Task Manager
%SYS_DISK%:\Program Files\VMware
%SYS_DISK%:\Program Files\Kaspersky Lab
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Kaspersky Lab
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
%SYS_DISK%:\Program Files\ESET
%SYS_DISK%:\Program Files\Panda Security
%SYS_DISK%:\Program Files\Avira7
%SYS_DISK%:\Program Files\Norton AntiVirus
%SYS_DISK%:\Program Files\Alwil Software
%SYS_DISK%:\Program Files\Agnitum
%SYS_DISK%:\Program Files\Symantec
%SYS_DISK%:\Program Files\AVG
%SYS_DISK%:\Program Files\XCore
%SYS_DISK%:\Program Files\BitDefender\BitDefender 2009
%SYS_DISK%:\Documents and Settings\All Users\Application Data\McAfee
%SYS_DISK%:\Program Files\McAfee*
%SYS_DISK%:\Program Files\Common Files\Symantec Shared
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Symantec
%SYS_DISK%:\Program Files\Panda Security\Panda Antivirus Pro 2009
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Panda Security
%SYS_DISK%:\Program Files\a-squared Anti-Malware
%SYS_DISK%:\Program Files\a-squared HiJackFree
%SYS_DISK%:\Program Files\AhnLab(
%SYS_DISK%:\Documents and Settings\All Users\Application Data\avg
%SYS_DISK%:\Program Files\AVG\
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Avira
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Doctor WebOC
%SYS_DISK%:\Program Files\Common Files\Doctor Web
%SYS_DISK%:\Program Files\DrWeb
%SYS_DISK%:\Documents and Settings\All Users\Application Data\f-secure
%SYS_DISK%:\Documents and Settings\NetworkService\Local Settings\Application Data\F-Secure
%SYS_DISK%:\Program Files\F-Secure Internet Security
%SYS_DISK%:\Documents and Settings\All Users\Application Data\G DATAX
%SYS_DISK%:\Program Files\Common Files\G DATA
%SYS_DISK%:\Documents and Settings\All Users\Application Data\PC Tools
%SYS_DISK%:\Program Files\Common Files\PC Tools
%SYS_DISK%:\Program Files\PC Tools Internet Security
%SYS_DISK%:\Documents and Settings\All Users\Application Data\K7 Computing
%SYS_DISK%:\Program Files\K7 Computing
%SYS_DISK%:\Program Files\Quick Heal
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Trend MicrovHE
%SYS_DISK%:\Program Files\Trend Micro
%SYS_DISK%:\Program Files\Vba32
%SYS_DISK%:\Program Files\Sunbelt Software
%SYS_DISK%:\Documents and Settings\All Users\Application Data\ESET
%SYS_DISK%:\Documents and Settings\All Users\Application Data\FRISK Software
%SYS_DISK%:\Program Files\FRISK Softwaren
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Agnitumy
%SYS_DISK%:\Program Files\Avira GmbH
%SYS_DISK%:\Program Files\Security Task Manager
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Zillya AntivirusQ
%SYS_DISK%:\Program Files\Zillya Antivirust
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Spyware Terminator
%SYS_DISK%:\Program Files\Spyware Terminator
%SYS_DISK%:\Program Files\Lavasoft
%SYS_DISK%:\Program Files\BlockPost
%SYS_DISK%:\Documents and Settings\All Users\Application Data\DefenseWall HIPS
%SYS_DISK%:\Program Files\DefenseWall%8v
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware
%SYS_DISK%:\Program Files\Microsoft Security Essentials
%SYS_DISK%:\Program Files\Sandboxie
%SYS_DISK%:\Program Files\Positive Technologies
%SYS_DISK%:\Program Files\UACenter
%SYS_DISK%:\Documents and Settings\All Users\Application Data\Malwarebytes
%SYS_DISK%:\Program Files\Malwarebytes' Anti-Malware
%SYS_DISK%:\Program Files\Spybot - Search & Destro
%SYS_DISK%:\Program Files\Malwarebytes' Anti-Malwar
%SYS_DISK%:\Program Files\Comodo\COMODO Internet Security
%SYS_DISK%:\Program Files\STOPzilla
%SYS_DISK%:\Program Files\Quick Heal\Quick Heal AntiVirus Pro
%SYS_DISK%:\Program Files\PC Tools Security
%SYS_DISK%:\Program Files\Emsisoft Anti-Malware
%SYS_DISK%:\Program Files\Lavasoft\Ad-Aware Antivirus
%SYS_DISK%:\Program Files\IObit\Advanced SystemCare with Antivirus 2013
%SYS_DISK%:\Program Files\IObit\Advanced SystemCare Ultimate 7
%SYS_DISK%:\Program Files\Ashampoo\Ashampoo Anti-Virus\
%SYS_DISK%:\Program Files\Arovax Shiel
%SYS_DISK%:\Program Files\Advanced Spyware Remover Pro
%SYS_DISK%:\Program Files\Auslogics Software\Auslogics Antivirus 2013
%SYS_DISK%:\Program Files\AVAST Software\Avast
%SYS_DISK%:\Program Files\Kaspersky Lab\Kaspersky Security Scan 2.0
%SYS_DISK%:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0
%SYS_DISK%:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0
%SYS_DISK%:\Program Files\AVG\AVG2014
%SYS_DISK%:\Program Files\AVG\AVG2013
%SYS_DISK%:\Program Files\AVG\AVG2012
%SYS_DISK%:\Program Files\Trend Micro\Titanium
%SYS_DISK%:\Program Files\eScan
%SYS_DISK%:\Program Files\Avira\AntiVir Desktop*
%SYS_DISK%:\Program Files\BitDefender
%SYS_DISK%:\Program Files\Bitdefender\Bitdefender3
%SYS_DISK%:\Program Files\Sunbelt Software\CounterSpy\
%SYS_DISK%:\Program Files\BullGuard Ltd\BullGuard Antivirus
%SYS_DISK%:\Program Files\ESET\ESET NOD32 Antivirus
%SYS_DISK%:\Program Files\EffeTech HTTP Sniffer
%SYS_DISK%:\Program Files\ESET\ESET Smart Security
%SYS_DISK%:\Program Files\Kaspersky Lab\Kaspersky CRYSTAL 3.0
%SYS_DISK%:\Program Files\Agnitum\Outpost Antivirus Pro
%SYS_DISK%:\Program Files\Online Armor
%SYS_DISK%:\Program Files\FRISK Software\F-PROT Antivirus for Windows
%SYS_DISK%:\Program Files\IEInspector\HTTPAnalyzerFull
%SYS_DISK%:\Program Files\F-Secure
%SYS_DISK%:\Program Files\G Data\AntiVirus\GUI
%SYS_DISK%:\Program Files\G Data\AntiVirus\AVK
%SYS_DISK%:\Program Files\K7 Computing\K7TSecurity
%SYS_DISK%:\Program Files\Kerish Doctor
%SYS_DISK%:\Program Files\MSDL-MSDLAV
%SYS_DISK%:\Program Files\Microsoft Security Client
%SYS_DISK%:\Program Files\Online Solutions\OSAM
%SYS_DISK%:\Program Files\Online Solutions\OSSS
%SYS_DISK%:\Program Files\Network Security Task Manager
%SYS_DISK%:\Program Files\Norton Internet Security\Engine\21.0.2.1
%SYS_DISK%:\Program Files\Agnitum\Outpost Firewall Pro
%SYS_DISK%:\Program Files\Panda Security\Panda Antivirus Pro 2014
%SYS_DISK%:\Program Files\Panda Security\Panda Gold Protection
%SYS_DISK%:\Program Files\Panda Security\Panda Global Protection 2014
%SYS_DISK%:\Program Files\Panda Security\Panda Internet Security 2014
%SYS_DISK%:\Program Files\Kromtech\PCKAV
%SYS_DISK%:\Program Files\InCode Solutions\RemoveIT Pro 2014 Ultra
%SYS_DISK%:\Program Files\Security Suite 5
%SYS_DISK%:\Program Files\IKARUS\anti.virus
%SYS_DISK%:\Program Files\Active Shield 5
%SYS_DISK%:\Program Files\SpyShelter Personal Free
%SYS_DISK%:\Program Files\Stronghold Antivirus
%SYS_DISK%:\Program Files\VIPRE
%SYS_DISK%:\Program Files\SUPERAntiSpyware
%SYS_DISK%:\Program Files\True Sword 5
%SYS_DISK%:\Program Files\Filseclab\TwisterN
%SYS_DISK%:\Program Files\TrustPort\Antivirus\bin
%SYS_DISK%:\Program Files\TrustPort\PersonalFirewall\bin
%SYS_DISK%:\Program Files\UnThreat AntiVirus
%SYS_DISK%:\Program Files\Vba32\b
%SYS_DISK%:\Protector Plus
%SYS_DISK%:\Program Files\Fighters
%SYS_DISK%:\Program Files\Webroot(
%SYS_DISK%:\Program Files\ParetoLogic\XoftSpy AntiVirus Pro
%SYS_DISK%:\Program Files\CheckPoint\ZoneAlarm
%SYS_DISK%:\Program Files\Trend Micro\AntiSpyware
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment