Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Services\Nationalqfo] 'Start' = '00000002'
- <SYSTEM32>\hyjzyk.exe
- %TEMP%\Ans.exe
- %TEMP%\щ¦йцDDOS 2009 V15.0.exe
- <SYSTEM32>\hyjzyk.exe
- %TEMP%\Ans.exe
- %TEMP%\щ¦йцDDOS 2009 V15.0.exe
- 'ca####.no-ip.org':443
- DNS ASK ca####.no-ip.org
- ClassName: 'Shell_TrayWnd' WindowName: ''