Technical Information
- iexplore.exe
- %TEMP%\nsacc35.tmp
- %TEMP%\loadadv579.exe
- %TEMP%\163.exe
- %TEMP%\guyi1234.exe
- %WINDIR%\syswow64\ldcore.dll
- %TEMP%\nsad559.tmp
- %TEMP%\lll.txt
- %TEMP%\lll.exe
- DNS ASK ch###.ic-soft.cn
- '%TEMP%\loadadv579.exe'
- '%TEMP%\163.exe'
- '%TEMP%\guyi1234.exe'
- '%TEMP%\lll.exe'