Техническая информация
- '<SYSTEM32>\reg.exe' add HKLM\SOFTWARE\KasperskyLab\AVP15.0.1\settings /v Ins_InitMode /t REG_DWORD /d 1 /f
- '<SYSTEM32>\reg.exe' add HKLM\SOFTWARE\KasperskyLab\AVP15.0.1\settings /v EnableSelfProtection /t REG_DWORD /d 1 /f
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\reg.exe' delete HKLM\SOFTWARE\Microsoft\SystemCertificates\SPC /f
- '<SYSTEM32>\reg.exe' delete HKLM\SOFTWARE\KasperskyLab\LicStrg /f
- '<SYSTEM32>\reg.exe' delete HKLM\SOFTWARE\Wow6432Node\KasperskyLab\LicStrg /f
- %TEMP%\~import.reg
- %TEMP%\CTM7VJHS.bat
- %TEMP%\CTM7VJHS.bat
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini