Technical Information
- User Account Control (UAC)
- '<SYSTEM32>\netsh.exe' advfirewall firewall add rule name="Windows Service Updater" dir=in action=allowdescription="Windows Component" program="<Full path to file>" enable=yes
- '19#.#07.17.225':22
- 'ch####p.dyndns.org':80
- 'in###niper.net':80
- 'in###niper.net':443
- '19#.#07.17.225':80
- http://ch####p.dyndns.org/
- http://www.in###niper.net/index.php?ip########################
- 'in###niper.net':443
- DNS ASK go##le.de
- DNS ASK ch####p.dyndns.org
- DNS ASK in###niper.net
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "<Full path to file>"
- '%WINDIR%\microsoft.net\framework64\v2.0.50727\dw20.exe' -x -s 1224