Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DoNotAllowExceptions' = '00000000'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- <SYSTEM32>\sc.exe
- <SYSTEM32>\ftp.exe -i -s:2.txt
- <SYSTEM32>\ping.exe 1.1.1.1 -n 1 -w 30000
- <SYSTEM32>\cmd.exe /c ""%TEMP%\1.tmp\batfile.bat" "
- <SYSTEM32>\netsh.exe firewall set opmode mode=DISABLE
- <SYSTEM32>\ftp.exe -i -s:1.txt
- %TEMP%\1.tmp\2.txt
- %TEMP%\1.tmp\1.txt
- %TEMP%\1.tmp\batfile.bat
- %TEMP%\1.tmp\2.txt
- %TEMP%\1.tmp\1.txt
- 'localhost':1066
- 'localhost':1068
- 'localhost':1064
- 'localhost':1060
- 'localhost':1062
- 'localhost':1070
- 'localhost':1079
- 'localhost':1081
- 'localhost':1077
- 'localhost':1072
- 'localhost':1075
- 'localhost':1058
- 'localhost':1042
- 'localhost':1044
- 'localhost':1040
- 'localhost':1037
- 'ft#.####tips1000.lx10.net':21
- 'localhost':1046
- 'localhost':1054
- 'localhost':1056
- 'localhost':1052
- 'localhost':1048
- 'localhost':1050
- DNS ASK ft#.####tips1000.lx10.net