Техническая информация
- Центр обеспечения безопасности (Security Center)
- Системный антивирус (Защитник Windows)
- %WINDIR%\win1.bat
- %WINDIR%\windows1.bat
- %WINDIR%\syswow64\mfc22.dll
- %WINDIR%\syswow64\wsock33.dll
- ClassName: 'EDIT' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c ""%WINDIR%\win1.bat" "
- '%WINDIR%\syswow64\cmd.exe' /K %WINDIR%\windows1.bat
- '%WINDIR%\syswow64\sc.exe' config ccEvtMgr start= disabled
- '%WINDIR%\syswow64\sc.exe' stop ccEvtMgr
- '%WINDIR%\syswow64\sc.exe' config SharedAccess start= disabled
- '%WINDIR%\syswow64\sc.exe' stop SharedAccess
- '%WINDIR%\syswow64\sc.exe' config windefend start= disabled
- '%WINDIR%\syswow64\sc.exe' stop windefend
- '%WINDIR%\syswow64\sc.exe' config ERSvc start= disabled
- '%WINDIR%\syswow64\sc.exe' stop ERSvc
- '%WINDIR%\syswow64\sc.exe' config sp_rssrv start= disabled
- '%WINDIR%\syswow64\sc.exe' stop sp_rssrv
- '%WINDIR%\syswow64\sc.exe' config AntiVirService start= disabled
- '%WINDIR%\syswow64\sc.exe' stop AntiVirService
- '%WINDIR%\syswow64\sc.exe' config wscsvc start= disabled
- '%WINDIR%\syswow64\sc.exe' stop wscsvc