Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Connection Manager.lnk
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%WINDIR%\explorer.exe' = '%WINDIR%\explorer.exe:*:Enabled:Windows Update'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] '%WINDIR%\explorer.exe' = '%WINDIR%\explorer.exe:*:Enabled:Windows Update'
- <SYSTEM32>\netsh.exe firewall add allowedprogram program="%WINDIR%\explorer.exe" name="Windows Update" mode=ENABLE scope=ALL profile=ALL
- %WINDIR%\explorer.exe
- %WINDIR%\explorer.exe
- %APPDATA%\Connection Manager\Connection Manager.exe
- %HOMEPATH%\Start Menu\Programs\Startup\Connection Manager.lnk
- %HOMEPATH%\Start Menu\Programs\Startup\Connection Manager.lnk
- %APPDATA%\Connection Manager\Connection Manager.exe
- 'ch###idol.com':8773
- '20#.#6.232.182':80
- 20#.#6.232.182/windowsupdate/v6/thanks.aspx?ln###################
- DNS ASK ch###idol.com
- DNS ASK up####.microsoft.com