Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a3f95571-a5de-4563-b999-bdb983cf022e}]
- %TEMP%\401643b9\Sl9cWT0U3LVSp25.dat
- %TEMP%\401643b9\JY5WgRilOWP2oY.dll
- %TEMP%\401643b9\JY5WgRilOWP2oY.tlb
- %TEMP%\401643b9\JY5WgRilOWP2oY.x64.dll
- %ProgramFiles%\VaiuDiX\JY5WgRilOWP2oY.dll
- %ProgramFiles%\VaiuDiX\JY5WgRilOWP2oY.tlb
- %ProgramFiles%\VaiuDiX\JY5WgRilOWP2oY.dat
- %ProgramFiles%\VaiuDiX\JY5WgRilOWP2oY.x64.dll
- %ALLUSERSPROFILE%\Application Data\VaiuDiX\Sl9cWT0U3LVSp25.exe
- %ALLUSERSPROFILE%\Application Data\VaiuDiX\Sl9cWT0U3LVSp25.dat
- %ALLUSERSPROFILE%\Application Data\6e958a80feb239af\{681002C6-5019-81A2-7871-A43754F71E56}.20180413192219
- %TEMP%\401643b9\Sl9cWT0U3LVSp25.dat
- %TEMP%\401643b9\JY5WgRilOWP2oY.dll
- %TEMP%\401643b9\JY5WgRilOWP2oY.tlb
- %TEMP%\401643b9\JY5WgRilOWP2oY.x64.dll
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles%\VaiuDiX\JY5WgRilOWP2oY.x64.dll"