Technical Information
- [<HKLM>\SOFTWARE\Classes\PPARTY File\shell\open\command] '' = '%ProgramFiles%\dialers\personal_party\personal_party.exe %1'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Personal_Party' = '%ProgramFiles%\dialers\personal_party\personal_party.exe /noconnect'
- '%ProgramFiles%\dialers\personal_party\personal_party.exe' -kill <Full path to virus> /install
- %HOMEPATH%\Start Menu\Programs\personal_party\Personal_Party.lnk
- %HOMEPATH%\Start Menu\Personal_Party.lnk
- %HOMEPATH%\Desktop\Personal_Party.lnk
- %ProgramFiles%\dialers\personal_party\personal_party.exe
- <SYSTEM32>\Personal_Party-uninstall.exe
- %HOMEPATH%\Start Menu\Programs\personal_party\Uninstall Personal_Party.lnk
- '20#.#92.120.56':80
- ClassName: '' WindowName: 'Personal_Party'
- ClassName: 'PERSONAL_PARTY' WindowName: ''