Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Services\TSAuModzDriver] 'ImagePath' = '<DRIVERS>\TSAuModzDriver.sys'
- [<HKLM>\SYSTEM\ControlSet001\Services\EnumHook] 'ImagePath' = '<DRIVERS>\slEnumHook.sys'
- %TEMP%\TSAuModzDriver.sys
- <DRIVERS>\TSAuModzDriver.sys
- %TEMP%\~DF4C1F.tmp
- %TEMP%\slEnumHook.sys
- <DRIVERS>\slEnumHook.sys
- %TEMP%\TSAuModzDriver.sys
- %TEMP%\slEnumHook.sys
- 'ts##dz.net':80
- 'ts##dz.com':80
- DNS ASK ts##dz.net
- DNS ASK ts##dz.com
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - LIST MAU'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - TEN ROOM DAI'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - QUAY EVENT...'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - LOADING...'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - LIST HANH DONG'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - DANG KY TAI KHOAN VIP'
- ClassName: 'ThunderRT6FormDC' WindowName: 'TSMODZ - THIET LAP NHIEU ACC'