Техническая информация
- '<SYSTEM32>\reg.exe' delete HKLM\SOFTWARE\Wow6432Node\KasperskyLab\LicStrg /f
- '<SYSTEM32>\reg.exe' add HKLM\SOFTWARE\KasperskyLab\AVP15.0.0\settings /v Ins_InitMode /t REG_DWORD /d 1 /f
- '<SYSTEM32>\reg.exe' add HKLM\SOFTWARE\KasperskyLab\AVP15.0.0\settings /v EnableSelfProtection /t REG_DWORD /d 1 /f
- '<SYSTEM32>\reg.exe' delete HKLM\SOFTWARE\Microsoft\SystemCertificates\SPC /f
- '<SYSTEM32>\reg.exe' delete HKLM\SOFTWARE\KasperskyLab\LicStrg /f
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- %TEMP%\4T9ARIN1.bat
- %TEMP%\4T9ARIN1.bat
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini