Техническая информация
- Системный антивирус (Защитник Windows)
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Group Policy Objects\{B99803DD-46C1-4084-B896-6B2292E5BEFF}Machine\SOFTWARE\Policies\Microsoft\Windows Defender\Exclusions\Extensions] 'exe' = ...
- [<HKLM>\Software\Policies\Microsoft\Windows Defender\Exclusions\Extensions] 'exe' = ''
- %WINDIR%\syswow64\grouppolicy\gpt.ini
- %ALLUSERSPROFILE%\ntuser.pol
- '23.##4.227.214':80
- '23.##4.227.202':80
- '23.##4.227.205':80
- '20#.#7.104.60':80
- DNS ASK ip##fo.io
- DNS ASK db##p.com
- '<SYSTEM32>\raserver.exe' /offerraupdate