Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '<File name> Start' = '<Full path to file>'
- Handler for all processes: <Current directory>\<File name>.01
- Handler for all processes: <Current directory>\<File name>.01
- ClassName: 'OLLYDBG', WindowName: ''
- <Current directory>\<File name>.02
- %ALLUSERSPROFILE%\Start Menu\Programs\Аrdamаx Kеylogger 4.8\Аrdamаx Kеylogger 4.8.lnk
- <Current directory>\<File name>.01
- %ALLUSERSPROFILE%\Application Data\<File name>\<File name>.004