Technical Information
- %WINDIR%\system.ini
- %TEMP%\nsmb07b.tmp\system.dll
- %TEMP%\144.exe
- %TEMP%\nshb368.tmp
- %TEMP%\nsmb388.tmp\system.dll
- %WINDIR%\uodo\game.dll
- %TEMP%\nsmb388.tmp\system.dll
- %TEMP%\144.exe
- %TEMP%\nsmb07b.tmp\system.dll
- '%TEMP%\144.exe' 8280
- '%WINDIR%\syswow64\regsvr32.exe' "%WINDIR%\UoDo\game.dll" /s