Technical Information
- %TEMP%\qkqcu3wocth
- %TEMP%\qkqcu3wocth.dll
- http://no#####own.x.fc2.com/o8jftd8b
- http://www.fr#####newesternshow.it/69ismn
- http://www.ta###show.it/y3ni0
- http://ka###it.szm.com/my0txxf
- DNS ASK no#####own.x.fc2.com
- DNS ASK so####olady7.wang
- DNS ASK fr#####newesternshow.it
- DNS ASK ta###show.it
- DNS ASK ka###it.szm.com
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\QKQCU3~1.DLL,qwerty 323