Technical Information
- <SYSTEM32>\tasks\driverupdatecheck_{b324fs64211fa63y2020}
- %APPDATA%\microsoft\net\driverupdatecheck.exe
- %APPDATA%\microsoft\net\netservicex64.zip
- %APPDATA%\microsoft\net\driverupdatecheck.exe
- http://fi#####10.karelia.ru/k3rq9g/a26f730987f30dc365eeac50d0e053aa/dab7454de371f347b2afc7c14d7c47a2/NetServiceX64.zip?fo###
- http://fi##.karelia.ru/k3rq9g/NetServiceX64.zip
- DNS ASK fi#####10.karelia.ru
- DNS ASK fi##.karelia.ru
- '%APPDATA%\microsoft\net\driverupdatecheck.exe'
- '<SYSTEM32>\schtasks.exe' /create /sc MINUTE /mo 1 /tn "DriverUpdateCheck_{B324FS64211FA63Y2020}" /tr "%APPDATA%\Microsoft\Net\DriverUpdateCheck.exe" /f' (with hidden window)
- '%APPDATA%\microsoft\net\driverupdatecheck.exe' ' (with hidden window)
- '<SYSTEM32>\schtasks.exe' /create /sc MINUTE /mo 1 /tn "DriverUpdateCheck_{B324FS64211FA63Y2020}" /tr "%APPDATA%\Microsoft\Net\DriverUpdateCheck.exe" /f
- '<SYSTEM32>\taskeng.exe' {90BFF49F-1D90-4BB6-89ED-DE029B7913D4} S-1-5-21-1960123792-2022915161-3775307078-1001:loimdp\user:Interactive:[1]