Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '<File name> Start' = '<Full path to file>'
- Handler for all processes: <Current directory>\<File name>.01
- Handler for all processes: <Current directory>\<File name>.01
- %ALLUSERSPROFILE%\Start Menu\Programs\Аrdаmаx Free Keylogger 4.6.2\Аrdаmаx Free Keylogger 4.6.2.lnk
- <Current directory>\<File name>.01
- %ALLUSERSPROFILE%\Application Data\<File name>\<File name>.004