Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DoNotAllowExceptions' = '00000000'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- '<SYSTEM32>\taskkill.exe' /f /im avgcc32.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgctrl.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgupsvc.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgw.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgserv9schedapp.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgemc.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgserv.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgserv9.exe
- '<SYSTEM32>\netsh.exe' firewall set opmode mode = disable
- '<SYSTEM32>\net.exe' stop SharedAccess
- '<SYSTEM32>\net.exe' stop wscsvc
- '<SYSTEM32>\net1.exe' stop wscsvc
- '<SYSTEM32>\taskkill.exe' /f /im avgcc.exe
- '<SYSTEM32>\taskkill.exe' /f /im avgamsvr.exe
- '<SYSTEM32>\net1.exe' stop SharedAccess
- '<SYSTEM32>\sc.exe' config wscsvc start= disabled
- AVGCTRL.EXE
- AVGCC32.EXE
- avgcc.exe
- ClassName: '(null)' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'update'