Техническая информация
- <SYSTEM32>\net1.exe stop SharedAccess
- <SYSTEM32>\reg.exe add HKLM\SYSTEM\CurrentControlSet\Services\wscsvc /v Start /t REG_DWORD /d 4 /f
- %WINDIR%\regedit.exe /S ""%HOMEPATH%\Local Settings\Temp.\iytw.reg""
- <SYSTEM32>\net.exe stop "Security Center"
- <SYSTEM32>\net1.exe stop "Security Center"
- <SYSTEM32>\net.exe stop SharedAccess
- %TEMP%\iytw.reg
- %TEMP%\bt4473.bat
- %TEMP%\bt4473.bat
- %TEMP%\bt4473.bat
- %TEMP%\iytw.reg
- ClassName: 'RegEdit_RegEdit' WindowName: ''