Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'OneDrive' = '%APPDATA%\ExplorerInternet\Ones.exe'
- %TEMP%\OneDrive.exe
- ClassName: 'OLLYDBG', WindowName: ''
- ClassName: 'GBDYLLO', WindowName: ''
- ClassName: 'pediy06', WindowName: ''
- %TEMP%\DriversAMD.exe
- %TEMP%\DriversAVI.exe
- %TEMP%\OneDrive.exe
- %TEMP%\Ones.exe
- %TEMP%\OpenCL.dll
- %TEMP%\WinUpdate.exe
- %TEMP%\DriversUpdate.exe
- from %TEMP%\DriversAMD.exe to %APPDATA%\ExplorerInternet\DriversAMD.exe
- from %TEMP%\DriversAVI.exe to %APPDATA%\ExplorerInternet\DriversAVI.exe
- from %TEMP%\WinUpdate.exe to %APPDATA%\ExplorerInternet\WinUpdate.exe
- from %TEMP%\OpenCL.dll to %APPDATA%\ExplorerInternet\OpenCL.dll
- from %TEMP%\Ones.exe to %APPDATA%\ExplorerInternet\Ones.exe
- '%TEMP%\DriversUpdate.exe' 0
- '%APPDATA%\ExplorerInternet\Ones.exe'