Technical Information
- <Current directory>\<Virus name>.new.exe /update "<Full path to virus>"
- <Current directory>\<Virus name>.new.exe (downloaded from the Internet)
- <Current directory>\<Virus name>.new.exe
- 'up#.l2ru.ws':80
- up#.l2ru.ws/LineageII.exe
- up#.l2ru.ws/options.xml
- DNS ASK up#.l2ru.ws
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''