PUP.DriverPack

Analysis Report

General information

Family Name: PUP.DriverPack
Signature status: Hash Mismatch

Known Samples

MD5: ae3f2a529228ec114ca47d969fdf851f
SHA1: 47eb3e1ebc3e93f70d1b25a180968be84fbe0ae9
SHA256: 00FB319157301BB7BFAD27F1A5191807839D61DC02A6D607C1EA6E167C03B2E4
File Size: 8.31 MB, 8312088 bytes
MD5: 8f045e67a86857353f6bae46db302deb
SHA1: cce946e2106ac629656f0d12faec6aa313a9158c
SHA256: A41FA0BFCAD944B9CB979212D7328838B168425EB63F0D6892194614DE0E3568
File Size: 8.39 MB, 8390367 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Digital Signatures

Signer Root Status
Kuzyakov Artur Vyacheslavovich USERTrust RSA Certification Authority Hash Mismatch
Kuzyakov Artur Vyacheslavovich USERTrust RSA Certification Authority Hash Mismatch

Files Modified

File Attributes
c:\program files\common files\system\symsrv.dll Generic Write,Read Attributes
c:\program files\common files\system\symsrv.dll.000 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\a1d26e2\a8bd1f7080c.tmp Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\config.js Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\blank.gif Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\custom-control.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpcheckbox\drpcheckbox.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpcheckbox\drpcheckbox.svg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpcheckbox\drpcheckbox.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpcheckbox\drpcheckbox.woff Generic Write,Read Attributes
Show More
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpicons\drpicons-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpicons\drpicons-webfont.svg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpicons\drpicons-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\drpicons\drpicons-webfont.woff Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\generator_config.txt Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-bold-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-bold-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-italic-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-italic-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-regular-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-regular-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-semibold-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\open-sans\opensans-semibold-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_light-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_light-webfont.svg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_light-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_light-webfont.woff Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_regular-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_regular-webfont.svg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_regular-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_regular-webfont.woff Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_semibold-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_semibold-webfont.svg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_semibold-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proxima_nova_semibold-webfont.woff Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proximanova-bold.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proximanova-bold.svg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proximanova-bold.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\proximanova\proximanova-bold.woff Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\roboto\roboto-light-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\roboto\roboto-light-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\roboto\roboto-regular-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\roboto\roboto-regular-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\roboto\roboto-thin-webfont.eot Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\fonts\roboto\roboto-thin-webfont.ttf Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\icons-checkbox.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\icons.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\ie6.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\ie7.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\lte-ie8.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\lte-ie9.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\normalize.min.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\open-sans.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\proximanova.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\roboto.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\css\style.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\driverpacksolution.html Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\drp.css Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\drp.js Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\assistant-animation-img.gif Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\assistant-icons-sprite.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\chat-icon.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\directx.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\netframework.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\new-chat-off.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\no-sound-hover.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\no-sound.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\ny-chat-icon.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\sound.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\start-assistant.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\start-chat-img.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\systemlib.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-chat\visualc.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-faces\chat\1.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-faces\chat\5.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-faces\start-screen\1.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\assistant-faces\start-screen\5.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\blank.gif Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\btn-icon-admin-mode.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\bugreport\bugreport_icon_alert.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\bugreport\bugreport_icon_ie.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\bugreport\bugreport_icon_previous.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\bugreport\bugreport_icon_skip.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\bugreport\bugreport_loader.gif Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\burger\auto_installation.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\cam.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\apps.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\arrow.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\computer.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\download.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\download.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\gears.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\help.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\info.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\line.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\pc.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\programms.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\reload-sm.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\setup.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\setup.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\store.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\charms\toolkit.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\bluetooth.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\cardreader.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\chipset.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\default.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\inputdev.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\lan.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\massstorage.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\modem.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\monitor.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\bluetooth.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\cardreader.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\chipset.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\default.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\inputdev.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\lan.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\massstorage.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\modem.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\monitor.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\other.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\phone.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\printer.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\sound.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\tvtuner.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\undefined-device.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\video.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\webcamera.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\new-ui\wifi.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\other.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\phone.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\printer.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\sound.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\tvtuner.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\undefined-device.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\video.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\webcamera.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-class\wifi.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\device-generic.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\driver-row-arrow.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\fake-installation\browser.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\fake-installation\connect.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\fake-installation\firewall.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\fake-installation\torrent.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\fake-installation\vpn.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\final\final_aside-failure$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\final\final_button-warning$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\final\final_failure$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\final\final_main-cta-arrow$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\final\final_partial-success$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\final\final_success$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-bottom-logo.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-button-icon-green.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-button-icon-white.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-cloud-big.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-cloud.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-civilization.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-doom-large.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-doom.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-gta.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-hitman.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-mafia.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-overwatch.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-resident-evil.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-witcher-large.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\games\games-top-witcher.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\header\header-bell.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\header\header-logo$2x.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\header\header-logo.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\header\new-header-logo.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\heart.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\info.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation-loader.gif Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner-arrow-left.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner-arrow-right.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_auth-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_avast-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_browsers-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_bullit-active.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_bullit-empty.png Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_catalog-bg-en.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_catalog-bg-pt-br.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_catalog-bg-ru.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_catalog-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_cloud-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_driverpack-for-all-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_how-it-works-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_istart-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_opera-bg.gif Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg-de.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg-en.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg-es.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg-fr.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg-pt-br.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg-ru.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_protect-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_restore-bg.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_social-bg-en.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_social-bg-ru.jpg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\driverpack-20260314175619\img\installation\banner_social-fb.png Generic Write,Read Attributes

311 additional files are not displayed above.

Registry Modifications

Key::Value Data API Name
HKLM\software\wow6432node\microsoft\windows nt\currentversion\windows::appinit_dlls C:\PROGRA~1\COMMON~1\System\symsrv.dll RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\windows nt\currentversion\windows::loadappinit_dlls  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\windows nt\currentversion\windows::requiresignedappinit_dlls RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\5.0\cache\content::cacheprefix RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\5.0\cache\cookies::cacheprefix Cookie: RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\5.0\cache\history::cacheprefix Visited: RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey
Show More
HKLM\system\controlset001\services\bam\state\usersettings\s-1-5-21-3119368278-1123331430-659265220-1001::\device\harddiskvolume2\windows\system32\conhost.exe 押謷됖ǜ RegNtPreCreateKey
HKLM\system\controlset001\control\session manager::pendingfilerenameoperations *1\??\C:\Windows\SystemTemp\MicrosoftEdgeUpdate.exe.old122e4*1\??\C:\Windows\SystemTemp\CopilotUpdate.exe.old12352*1\??\C:\P RegNtPreCreateKey

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
User Data Access
  • GetUserObjectInformation
Process Manipulation Evasion
  • NtUnmapViewOfSection
  • ZwMapViewOfSection
Process Shell Execute
  • CreateProcess
Syscall Use
  • ntdll.dll!NtAlertThreadByThreadId
  • ntdll.dll!NtAlpcSendWaitReceivePort
  • ntdll.dll!NtClose
  • ntdll.dll!NtCreateEvent
  • ntdll.dll!NtDuplicateObject
  • ntdll.dll!NtEnumerateValueKey
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtOpenKey
  • ntdll.dll!NtOpenKeyEx
  • ntdll.dll!NtOpenProcessToken
Show More
  • ntdll.dll!NtQueryAttributesFile
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryInformationToken
  • ntdll.dll!NtQueryKey
  • ntdll.dll!NtQuerySecurityAttributesToken
  • ntdll.dll!NtQueryValueKey
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtQueryVolumeInformationFile
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationProcess
  • ntdll.dll!NtSetInformationVirtualMemory
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtTraceControl
  • ntdll.dll!NtWaitLowEventPair
  • ntdll.dll!NtWriteFile
  • UNKNOWN

Shell Command Execution

C:\WINDOWS\system32\reg.exe import "C:\Users\Cwogofay\AppData\Local\Temp\DriverPack-20260314175619\Tools\patch.reg"
C:\WINDOWS\system32\mshta.exe "C:\Users\Cwogofay\AppData\Local\Temp\DriverPack-20260314175619\run.hta" --sfx "cce946e2106ac629656f0d12faec6aa313a9158c_0008390367"

Related Posts

Trending

Most Viewed

Loading...