Technical Information
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 1
- '<SYSTEM32>\rundll32.exe' "%PROGRAM_FILES%\NetMeeting\158953.dll",MainThread
- %PROGRAM_FILES%\NetMeeting\158953.dll
- from <Full path to virus> to <SYSTEM32>\159093.bak
- 'wf####5.f3322.net':1083
- DNS ASK wf####5.f3322.net