Technical Information
- <SYSTEM32>\cmd.exe /c afc9fe2f418b00a0.bat
- <SYSTEM32>\rundll32.exe "%PROGRAM_FILES%\WINDOWSS.INI" main
- ClassName: 'OLLYDBG' WindowName: ''
- <Current directory>\afc9fe2f418b00a0.bat
- %PROGRAM_FILES%\temp0\QQ.exe
- %PROGRAM_FILES%\WINDOWSS.INI
- 'zt####23.3322.org':777
- DNS ASK zt####23.3322.org