Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\lanmanserver] 'Start' = '00000002'
- '<SYSTEM32>\sc.exe' config lanmanserver start= AUTO
- '<SYSTEM32>\sc.exe' stop winmgmt
- '<SYSTEM32>\sc.exe' start lanmanserver
- '<SYSTEM32>\ntvdm.exe' -f -i1
- '<SYSTEM32>\ntvdm.exe' -f -i2
- '<SYSTEM32>\ntvdm.exe' -f -i3
- bdagent.exe
- GUARD.EXE
- fsav32.exe
- 360tray.exe
- fsavgui.exe
- AVP.EXE
- ekrn.exe
- avgcc.exe
- spidernt.exe
- AVGCTRL.EXE
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs5.tmp
- %WINDIR%\Temp\scs6.tmp
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs3.tmp
- %WINDIR%\Temp\scs5.tmp
- %WINDIR%\Temp\scs3.tmp
- %WINDIR%\Temp\scs6.tmp
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs1.tmp
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b10.b18.3a0007'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-af8.afc.380001'
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b00.b08.390002'