Technical Information
- %TEMP%\<Virus name>.rtf
- %TEMP%\temp_cab_804715.cab
- <SYSTEM32>\spool\drivers\w32x86\3\mxdwdui.BUD
- DNS ASK dn#.##ftncsi.com
- DNS ASK windowsupdate.microsoft.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'OleMainThreadWndClass' WindowName: ''
- ClassName: 'WordPadClass' WindowName: ''