Техническая информация
- <SYSTEM32>\net1.exe start "Server"
- <SYSTEM32>\net1.exe start "Routing and Remote Access"
- <SYSTEM32>\net.exe stop "Security Center"
- <SYSTEM32>\net1.exe stop "Security Center"
- <SYSTEM32>\net1.exe start "Remote Desktop Services"
- <SYSTEM32>\net1.exe start "TCP/IP NetBIOS Helper"
- <SYSTEM32>\net1.exe start "Secondary Logon"
- <SYSTEM32>\net1.exe start "Netlogon"
- <SYSTEM32>\net.exe stop "Windows Firewall"
- <SYSTEM32>\net1.exe stop "Windows Firewall"
- <SYSTEM32>\cmd.exe /c """%TEMP%\~aW12.bat"""
- <SYSTEM32>\reg.exe import ""%ALLUSERSPROFILE%\Application Data\sWPDNSE14\~aW12""
- <SYSTEM32>\net.exe stop "Offline Files"
- <SYSTEM32>\net1.exe stop "Offline Files"
- <SYSTEM32>\net.exe stop "Windows Defender"
- <SYSTEM32>\net1.exe stop "Windows Defender"
- %ALLUSERSPROFILE%\Application Data\sWPDNSE14\~aW12
- %TEMP%\~aW12.bat
- %ALLUSERSPROFILE%\Application Data\sWPDNSE14\~aW12
- ClassName: 'MS_WINHELP' WindowName: ''