Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Services\abp480n5] 'Start' = '00000002'
- '<SYSTEM32>\net1.exe' start abp480n5
- '<SYSTEM32>\ping.exe' localhost -n 2
- '<SYSTEM32>\ping.exe' localhost -n 3
- <DRIVERS>\winntd.dat
- %WINDIR%\abp480n5s
- from %WINDIR%\abp480n5s to <DRIVERS>\abp480n5.sys
- '95.##1.122.36':443