Техническая информация
- '<SYSTEM32>\netsh.exe' advfirewall firewall add rule name="KMS_VL_ALL" dir=in program="%WINDIR%\AK\KMS Server.exe" localport=1688 protocol=TCP action=allow remoteip=any
- %WINDIR%\AK\AK.cmd
- %WINDIR%\AK\x86\tap0901.cat
- %WINDIR%\AK\x64\tap0901.cat
- %WINDIR%\AK\tap0901.cer
- %WINDIR%\AK\x86\OemWin2k.inf
- %WINDIR%\AK\x64\OemWin2k.inf
- %WINDIR%\AK\x86\devcon.exe
- %WINDIR%\AK\x64\devcon.exe
- %WINDIR%\AK\KMS Server.exe
- %WINDIR%\AK\TunMirror.exe
- %WINDIR%\AK\x86\tap0901.sys
- %WINDIR%\AK\x64\tap0901.sys
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\AK\AK.cmd" "
- '<SYSTEM32>\reg.exe' query "HKU\S-1-5-19"
- '<SYSTEM32>\reg.exe' query "hklm\software\microsoft\Windows NT\currentversion" /v buildlabex
- '<SYSTEM32>\find.exe' /i "amd64"
- '<SYSTEM32>\find.exe' /i "9600"