Technical Information
- <SYSTEM32>\tasks\system32
- [HKLM\SYSTEM\CurrentControlSet\Services\IKEEXT] 'Start' = '00000002'
- [HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] 'EnableFirewall' = '00000000'
- [HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- '%WINDIR%\syswow64\netsh.exe' advfirewall set allprofiles state off
- <Current directory>\system.dll
- <Current directory>\system.ini
- '15#.#47.41.70':6666
- '15#.#47.41.70':6666