Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Firewall_Evaluator] 'ImagePath' = '"<Полный путь к файлу>" /o "<Текущая директория>" /f "CRNJEUFU.ISSUE.{3D6203AF-8F36-4E56-A6B9-18BC490E3298}" /ct 0'
- [<HKLM>\SYSTEM\ControlSet001\Services\Firewall_Evaluator] 'Start' = '00000002'
- '%WINDIR%\Temp\{A56B9CC5-BC83-4BB2-9C7F-DDEBBBD815F3}\collect.exe' /o "<Текущая директория>"
- %WINDIR%\Temp\{182975C6-0DC3-4BDC-9B01-841A0DFF2796}\acinv.dll
- %WINDIR%\Temp\{182975C6-0DC3-4BDC-9B01-841A0DFF2796}\collect.cab
- %WINDIR%\Temp\{182975C6-0DC3-4BDC-9B01-841A0DFF2796}\acinva.dll
- %WINDIR%\Temp\{182975C6-0DC3-4BDC-9B01-841A0DFF2796}\sdbapiu.dll
- %WINDIR%\Temp\{182975C6-0DC3-4BDC-9B01-841A0DFF2796}\sdbapi.dll
- %WINDIR%\Temp\{A56B9CC5-BC83-4BB2-9C7F-DDEBBBD815F3}\collect.cab
- %ALLUSERSPROFILE%\Application Data\Microsoft\CompatibilityEvaluators\wfce.log
- %WINDIR%\Temp\{A56B9CC5-BC83-4BB2-9C7F-DDEBBBD815F3}\acinv.dll
- %WINDIR%\Temp\{A56B9CC5-BC83-4BB2-9C7F-DDEBBBD815F3}\collect.exe
- %WINDIR%\Temp\{A56B9CC5-BC83-4BB2-9C7F-DDEBBBD815F3}\sdbapiu.dll