Technical Information
- %PROGRAM_FILES%\<Virus name>.exe
- ccapp.exe
- %PROGRAM_FILES%\<Virus name>.exe
- %PROGRAM_FILES%\<Virus name>.exe
- 'sa#####gafsa.no-ip.biz':4562
- DNS ASK sa#####gafsa.no-ip.biz
- '<Private IP address>':1035
- ClassName: 'VMDragDetectWndClass' WindowName: ''