Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Services' = '"%ALLUSERSPROFILE%\Application Data\Windows\Live\network.exe" /m'
- '<SYSTEM32>\reg.exe' add HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v "Windows Services" /d "\"%ALLUSERSPROFILE%\Application Data\Windows\Live\network.exe\" /m" /f
- '<SYSTEM32>\reg.exe' delete HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v "Windows Services" /f
- <LS_APPDATA>\Windows\Live\network.log
- %ALLUSERSPROFILE%\Application Data\Windows\Live\network.exe
- C:\network.log
- %ALLUSERSPROFILE%\Application Data\Windows\Live\network.exe