Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SoundDriver' = '<SYSTEM32>\lsasss.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DoNotAllowExceptions' = '00000000'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- '<SYSTEM32>\reg.exe' add HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN /V SoundDriver /d <SYSTEM32>\lsasss.exe /f
- '<SYSTEM32>\netsh.exe' firewall set opmode disable
- 'le####.etig.edu.ve':81
- 'le####.###astrocorrientes.gov.ar':81
- DNS ASK le####.etig.edu.ve
- DNS ASK le####.###astrocorrientes.gov.ar
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'