Technical Information
- <SYSTEM32>\tasks\windows deefder update
- from <Full path to file> to %ALLUSERSPROFILE%\microsoft\drm\update.exe
- 'id##x.cn':443
- 'x1.#.lencr.org':80
- '38.##1.93.18':65535
- 'st####ialect.top':83
- http://x1.#.lencr.org/
- http://st####ialect.top:83/uploads/Load.exe via st####ialect.top
- 'id##x.cn':443
- '38.##1.93.18':65535
- DNS ASK id##x.cn
- DNS ASK x1.#.lencr.org
- DNS ASK st####ialect.top
- ClassName: 'CTXOPConntion_Class' WindowName: ''