Technical Information
- [<HKLM>\System\CurrentControlSet\Services\IKEEXT] 'Start' = '00000002'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DoNotAllowExceptions' = '00000000'
- '%WINDIR%\syswow64\netsh.exe' firewall set opmode disable
- <Current directory>\r3dlog.txt
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c netsh firewall set opmode disable
- '%WINDIR%\syswow64\cmd.exe' /c regedit /s Lynn\asc_mains.dll
- '%WINDIR%\syswow64\regedit.exe' /s Lynn\asc_mains.dll