+
1 7 7

:

  1. #1
    zerg shakur       shakur
    04.01.2008
    G e n b o R
    148
    ()
    0
    : 0 (: 0).

    KIS 7 , Ccleaner , , , )))

  2. #2
    MupoTBopeu       MupoTBopeu
    06.10.2007
    127.0.0.1
    2,881
    ()
    0
    : 2 (: 2).

    Dron FFF ?

    .

  3. #3
    V.I.P. Nishka       Nishka
    19.08.2007
    1,360
    ()
    0
    : 0 (: 0).

    autorun.inf.
    [offtop]MupoTBopeu, , , . , , - ? ? ... [/offtop]

  4. #4
    graff_in    graff_in    graff_in      graff_in
    08.06.2007
    1,919
    ()
    0
    : 0 (: 0).

    . . ...

    2

    , .
    1. / // Kerberos Key Distribution Centers : ϴ˕ûʹ Kerberos....... ,
    2. autorun.inf .
    3. C:\WINDOWS\setuprs1.PIF.
    4. ( , . regedit regedit1; ) "Debugger"=setuprs1.PIF. :
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
    :
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmd.exe
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig.exe
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedt32.exe
    4. (cmd.exe) ( 3 ) :
    rd c:\runauto...\ /s /q, .
    , .
    5.
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmd.exe Debugger
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig.exe Debugger
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe Debugger
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedt32.exe Debugger
    HKLM\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Authorized Applications\List C:\WINDOWS\lsass.exe
    HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Authorized Applications\List C:\WINDOWS\lsass.exe
    HKLM\SYSTEM\ControlSet003\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Authorized Applications\List C:\WINDOWS\lsass.exe
    HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Author izedApplications\List C:\WINDOWS\lsass.exe

    , , ,
    HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_KKDC
    HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_KKDC
    HKLM\SYSTEM\ControlSet003\Enum\Root\LEGACY_KKDC
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_KKDC
    HKLM\SYSTEM\ControlSet001\Services\kkdc
    HKLM\SYSTEM\ControlSet002\Services\kkdc
    HKLM\SYSTEM\ControlSet003\Services\kkdc
    HKLM\SYSTEM\CurrentControlSet\Services\kkdc
    6.
    7. ,
    . , 3.
    !!!!

    !

  5. #5
    V.I.P. Nishka       Nishka
    19.08.2007
    1,360
    ()
    0
    : 0 (: 0).

    , 2 . , / .

  6. #6
    MupoTBopeu       MupoTBopeu
    06.10.2007
    127.0.0.1
    2,881
    ()
    0
    : 2 (: 2).

  7. #7
    V.I.P. Nishka       Nishka
    19.08.2007
    1,360
    ()
    0
    : 0 (: 0).

    MupoTBopeu, , , , .