Technical Information
- %WINDIR%\tasks\mydrivebuddy.job
- %ALLUSERSPROFILE%\application data\{f585eb57-7ae0-8097-f585-5eb577aead5d}\<File name>.exe
- %ALLUSERSPROFILE%\application data\{f585eb57-7ae0-8097-f585-5eb577aead5d}\<File name>.dat
- DNS ASK ge####ltiple.link
- DNS ASK al####el-pro.com
- DNS ASK mo###odel.biz
- DNS ASK ge###luesee.com