Technical Information
- %ALLUSERSPROFILE%\shell.ini
- '15#.#32.241.230':1766
- '15#.#2.128.129':443
- '15#.#32.241.230':2365
- '15#.#2.128.129':443
- '15#.#32.241.230':1766
- ClassName: 'CTXOPConntion_Class' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c del /q "<Full path to file>"' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c del /q "<Full path to file>"