Technical Information
- [<HKLM>\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '<Full path to file>' = '<Full path to file>:*:Enabled:<File name>....
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "<Full path to file>" "<File name>.exe" ENABLE
- 'st##.#gnorelist.com':5553
- DNS ASK st##.#gnorelist.com
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "<Full path to file>" "<File name>.exe" ENABLE' (with hidden window)
- '<SYSTEM32>\schtasks.exe' /query
- '<SYSTEM32>\schtasks.exe' /create /sc MINUTE /tn ChromeGoogleUpdater /MO 1 /tr <Full path to file>