Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ATKPwrCtrl' = '%APPDATA%\ASUS\ATK Hotkey\ATKPwrCtrl.exe'
- '%APPDATA%\ASUS\ATK Hotkey\ATKPwrCtrl.exe'
- '<Current directory>\~<File name>.exe'
- '<SYSTEM32>\attrib.exe' +s +h "<Current directory>\~<File name>.exe"
- %TEMP%\~DFA7F7.tmp
- %APPDATA%\ASUS\ATK Hotkey\ATKPwrCtrl.exe
- <Current directory>\~<File name>.exe
- <Current directory>\~<File name>.exe
- 'at####key.info.tm':4455
- DNS ASK at####key.info.tm
- ClassName: 'Shell_TrayWnd' WindowName: ''