Technical Information
- <SYSTEM32>\tasks\qnapp
- C:\users\public\011.zip
- C:\users\public\<File name>.exe
- C:\users\public\012.zip
- C:\users\public\qnbin\task.dat
- C:\users\public\qnbin\donottrace.txt
- C:\users\public\qnbin\natudp.dll
- C:\users\public\qnbin\p2pengineorg.dll
- C:\users\public\qnbin\qnapp.exe
- C:\users\public\qnbin\p2pengine.dll
- C:\users\public\qnbin\qnapp.dat
- C:\users\public\012.zip
- 'xm####.#l.files.1drv.com':443
- 'pa###bin.com':443
- 'ne##.#ookielive.top':2890
- 'a.###sbb.com':2819
- 'xm####.#l.files.1drv.com':443
- 'pa###bin.com':443
- 'ne##.#ookielive.top':2890
- 'a.###sbb.com':2819
- DNS ASK xm####.#l.files.1drv.com
- DNS ASK pa###bin.com
- DNS ASK ne##.#ookielive.top
- DNS ASK a.###sbb.com
- 'C:\users\public\qnbin\qnapp.exe'
- 'C:\users\public\qnbin\qnapp.exe' ' (with hidden window)
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "C:\users\public\qnbin\qnapp.exe"