Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Project1' = '%PROGRAM_FILES%\MSN Gaming Zone\Project1.exe'
- %PROGRAM_FILES%\MSN Gaming Zone\Project1.exe <Current directory>\<Virus name>
- %PROGRAM_FILES%\MSN Gaming Zone\Project1.exe
- %PROGRAM_FILES%\MSN Gaming Zone\zlib.dll
- <SYSTEM32>\MSWINSCK.OCX
- %PROGRAM_FILES%\MSN Gaming Zone\MSWINSCK.OCX
- %TEMP%\~DFC5A4.tmp
- '<Private IP address>':52
- '<Private IP address>':80
- <Private IP address>/zlib.dll
- <Private IP address>/MSWINSCK.OCX
- ClassName: 'TCPViewClass' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''