Technical Information
- <SYSTEM32>\debug02.exe
- <SYSTEM32>\debug01.exe
- <SYSTEM32>\debug.ini
- <SYSTEM32>\debug2.ini
- <SYSTEM32>\debug01.exe
- <SYSTEM32>\debug02.exe
- 'ba##.#zone.qq.com':80
- ba##.#zone.qq.com/fcg-bin/cgi_get_portrait.fcg?ui############
- DNS ASK ba##.#zone.qq.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: '<Virus name>.exe'
- ClassName: '' WindowName: 'debug01.exe'
- ClassName: '' WindowName: 'debug02.exe'