Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Chkabfat' = '{C673EB48-6025-412E-84A6-BCD9AC4C9AB5}'
- <SYSTEM32>\kbdabkey\getagmat\kbdusmic.dll
- <SYSTEM32>\vipodhex.dll
- %TEMP%\_is135859.ini
- <SYSTEM32>\madalx32.dll
- <SYSTEM32>\vipecmod.dll
- %TEMP%\UUU2.tmp
- %TEMP%\UUU1.tmp
- %TEMP%\UUU3.tmp
- <SYSTEM32>\secaxavi32.dll
- %TEMP%\UUU3.tmp
- %TEMP%\_is135859.ini
- %TEMP%\UUU1.tmp
- %TEMP%\UUU2.tmp