Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\wuauserv] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\BITS] 'Start' = '00000002'
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://windowsupdate.microsoft.com/
- <SYSTEM32>\sc.exe config wuauserv start= demand
- <SYSTEM32>\sc.exe stop wuauserv
- <SYSTEM32>\sc.exe start wuauserv
- <SYSTEM32>\sc.exe config BITS start= auto
- <SYSTEM32>\sc.exe start BITS
- <SYSTEM32>\sc.exe config wuauserv start= auto
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\windowsupdate.microsoft[1]
- %TEMP%\nsi2.tmp\ns6.tmp
- %TEMP%\nsi2.tmp\ns8.tmp
- %TEMP%\nsi2.tmp\ns7.tmp
- %TEMP%\nsi2.tmp\ns5.tmp
- %TEMP%\nsi2.tmp\ns3.tmp
- %TEMP%\nsi2.tmp\nsExec.dll
- %TEMP%\nsi2.tmp\Services.dll
- %TEMP%\nsi2.tmp\ns4.tmp
- %TEMP%\nsi2.tmp\ns8.tmp
- %TEMP%\nsi2.tmp\ns7.tmp
- %TEMP%\nsi2.tmp\Services.dll
- %TEMP%\nsi2.tmp\nsExec.dll
- %TEMP%\nsi2.tmp\ns4.tmp
- %TEMP%\nsi2.tmp\ns3.tmp
- %TEMP%\nsi2.tmp\ns6.tmp
- %TEMP%\nsi2.tmp\ns5.tmp
- '20#.#6.232.182':80
- 'localhost':1035
- 20#.#6.232.182/
- DNS ASK windowsupdate.microsoft.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''