Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DoNotAllowExceptions' = '00000000'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- %WINDIR%\eftepe.exe
- %WINDIR%\exit.exe
- %WINDIR%\launch.exe
- %WINDIR%\SkypeLogView.exe /shtml %WINDIR%\log.html
- <SYSTEM32>\ftp.exe -s:%WINDIR%\ftp.txt
- <SYSTEM32>\taskkill.exe /f /im launch.exe
- <SYSTEM32>\taskkill.exe /f /im eftepe.exe
- <SYSTEM32>\cmd.exe /c ""%PROGRAM_FILES%\1.bat" "
- <SYSTEM32>\netsh.exe firewall set opmode disable
- <SYSTEM32>\taskkill.exe /f /im skype.exe
- skype.exe
- %PROGRAM_FILES%\1.bat
- %WINDIR%\launch.exe
- %WINDIR%\ftp.txt
- %WINDIR%\log.html
- %WINDIR%\SkypeLogView.cfg
- %WINDIR%\SkypeLogView.exe
- %WINDIR%\exit.exe
- %WINDIR%\eftepe.exe
- %WINDIR%\launch.exe
- %WINDIR%\SkypeLogView.cfg
- %WINDIR%\log.html
- %WINDIR%\ftp.txt
- %WINDIR%\SkypeLogView.exe
- %WINDIR%\eftepe.exe
- 'ft#.#fees.net':21
- 'localhost':1035
- DNS ASK ft#.#fees.net
- '<IP-адрес в локальной сети>':1036
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''