Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ne' = 'C:\system32\twapn\Project1.exe /onboot'
- '<SYSTEM32>\twapn\Project1.exe'
- '%WINDIR%\regedit.exe' /S Reg.reg
- <SYSTEM32>\twapn\Setup.Lst
- <SYSTEM32>\twapn\Project1.DDF
- <SYSTEM32>\twapn\Project1.exe
- %WINDIR%\Reg.reg
- <SYSTEM32>\twapn\VB6STKIT.DLL
- <SYSTEM32>\twapn\stdole2.tlb
- <SYSTEM32>\twapn\Project1.BAT
- <SYSTEM32>\twapn\msvbvm60.dll
- <SYSTEM32>\twapn\COMCAT.DLL
- <SYSTEM32>\twapn\asycfilt.dll
- <SYSTEM32>\twapn\olepro32.dll
- <SYSTEM32>\twapn\oleaut32.dll
- <SYSTEM32>\twapn\MSWINSCK.OCX
- 'sm##.gmail.com':465
- DNS ASK sm##.gmail.com
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'