Technical Information
- %WINDIR%\explorer.exe
- <Full path to file>
- %ProgramFiles%\UNP\Logs\UpdateNotificationPipeline.001.etl
- from <Full path to file> to <Current directory>\old_<File name>.exe
- http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/disallowedcertstl.cab?04##############
- DNS ASK pa###bin.com
- DNS ASK go.microsoft.com
- DNS ASK share.microsoft.com
- DNS ASK maps.windows.com
- DNS ASK ar#.msn.com
- ClassName: 'OleMainThreadWndClass' WindowName: ''
- '<SYSTEM32>\devicecensus.exe'
- '<SYSTEM32>\apphostregistrationverifier.exe'
- '<SYSTEM32>\usoclient.exe' StartScan
- '<SYSTEM32>\unp\updatenotificationmgr.exe'
- '<SYSTEM32>\devicecensus.exe' UserCxt
- '<SYSTEM32>\svchost.exe' -k netsvcs -p