Technical Information
- %WINDIR%\syswow64\cmd.exe
- %WINDIR%\syswow64\cmd.exe
- %TEMP%\qq625619354.dll
- from %TEMP%\qq625619354.dll to %TEMP%\838910\....\temporaryfile
- ClassName: '' WindowName: 'cmd.exe'
- ClassName: '' WindowName: 'Microsoft Internet Explorer'
- ClassName: '' WindowName: '<File name>.exe'
- '%WINDIR%\syswow64\cmd.exe'