Technical Information
- <Current directory>\qqbmore.exe
- <Current directory>\axrm.exe
- <Current directory>\qqbmore.exe (downloaded from the Internet)
- <Current directory>\axrm.exe (downloaded from the Internet)
- <SYSTEM32>\cmd.exe /c <Current directory>\kgoidz.bat
- <Current directory>\qqbmore.exe
- <Current directory>\kgoidz.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\qqbmore[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\axrm[1].exe
- <Current directory>\axrm.exe
- 'dl#.#365.info':80
- 'localhost':1035
- dl#.#365.info/dls/qqbmore.exe
- dl#.#365.info/dls/axrm.exe
- DNS ASK dl#.#365.info