Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] '<SYSTEM32>\dmadmin.exe' = '<SYSTEM32>\dmadmin.exe:172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:dmadmin.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '<SYSTEM32>\sessmgr.exe' = '<SYSTEM32>\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] '%windir%\pchealth\helpctr\binaries\HelpSvc.exe' = '%windir%\pchealth\helpctr\binaries\HelpSvc.exe:172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:HelpSvc.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] '<SYSTEM32>\sessmgr.exe' = '<SYSTEM32>\sessmgr.exe:172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:enabled:@xpsp2res.dll,-22019'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] '<SYSTEM32>\wbem\unsecapp.exe' = '<SYSTEM32>\wbem\unsecapp.exe:172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:unsecapp.exe'
- C:\FirewallPush\netfw.inf
- %TEMP%\tmp3.tmp
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- %TEMP%\evnuaxv
- %WINDIR%\inf\netfw.inf
- %TEMP%\tmp3.tmp
- C:\FirewallPush\netfw.inf
- %TEMP%\aut1.tmp
- %TEMP%\evnuaxv
- %TEMP%\aut2.tmp
- ClassName: 'Shell_TrayWnd' WindowName: ''