Техническая информация
- '<SYSTEM32>\cacls.exe' <SYSTEM32>\secedit.exe /R users /e /c
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\cacls.exe' <SYSTEM32>\gpedit.msc /R users /e /c
- '<SYSTEM32>\gpupdate.exe' /force
- '<SYSTEM32>\cacls.exe' <SYSTEM32>\secedit.exe /P users:R /e /c
- '<SYSTEM32>\cacls.exe' <SYSTEM32>\gpedit.msc /P users:R /e /c
- '<SYSTEM32>\secedit.exe' /configure /db secedit.sdb /cfg c:\123.kh /quiet
- [<HKCU>\Software\Microsoft\Internet Explorer\Main] 'Window Title' = '???? ???? 0716-2428395'
- [<HKLM>\SOFTWARE\Microsoft\Internet Explorer\Main] 'Window Title' = '???? ???? 0716-2428395'
- %WINDIR%\security\tmp.edb
- %WINDIR%\security\edb.log
- <Текущая директория>\secedit.sdb
- %WINDIR%\security\edb.chk
- %WINDIR%\security\res1.log
- C:\123.kh
- %WINDIR%\security\res2.log
- %WINDIR%\security\edbtmp.log
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- C:\123.kh
- <Текущая директория>\secedit.sdb
- %WINDIR%\security\edbtmp.log в %WINDIR%\security\edb.log