Technical Information
- '%HOMEPATH%\My Documents\QD.exe' (downloaded from the Internet)
- '%HOMEPATH%\My Documents\QD.exe' GoogleAD
- %HOMEPATH%\My Documents\QD.exe
- %HOMEPATH%\My Documents\QD.exe
- 'go#####d.qiniudn.com':80
- 'ai##mmm.com':80
- 'sm##.126.com':25
- http://go#####d.qiniudn.com/QD.exe
- http://ai##mmm.com/AppEn.php
- DNS ASK go#####d.qiniudn.com
- DNS ASK ai##mmm.com
- DNS ASK sm##.126.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
