Technical Information
- %WINDIR%\syswow64\explorer.exe
- %TEMP%\nsc202d.tmp
- %TEMP%\nsx20f9.tmp\modern-header.bmp
- %TEMP%\nsx20f9.tmp\system.dll
- %HOMEPATH%\desktop\tweakeze\tweakeze.exe
- %TEMP%\nsx20f9.tmp\selfdel.dll
- %TEMP%\nsx20f9.tmp\modern-header.bmp
- %TEMP%\nsx20f9.tmp\selfdel.dll
- %TEMP%\nsx20f9.tmp\system.dll
- http://www.tw###eze.com/tw/get/config/
- DNS ASK tw###eze.com
- ClassName: '#32770' WindowName: ''
- ClassName: '#32770' WindowName: 'Tweakeze'
- '%HOMEPATH%\desktop\tweakeze\tweakeze.exe' /updateSuccess
- '%WINDIR%\syswow64\explorer.exe'