Technical Information
- [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run] 'kaxy.exe' = '"%ProgramFiles(x86)%\fz\kaxy\kaxy.exe" -autostart'
- User Account Control (UAC)
- %ProgramFiles(x86)%\fz\kaxy\kaxy.exe
- %ProgramFiles(x86)%\fz\kaxy\log.dll
- %LOCALAPPDATA%\microsoft\windows\actioncentercache\windows-systemtoast-securityandmaintenance_10_0.png
- %ProgramFiles(x86)%\fz\kaxy\kaxy.exe
- ClassName: 'Windows.UI.Core.CoreWindow' WindowName: 'ÐÂ֪ͨ'
- ClassName: 'µ�ϳÇÓëÓÂÊ¿' WindowName: 'µ�ϳÇÓëÓÂÊ¿£º´´ÐÂÊÀ¼Í'
- ClassName: '' WindowName: ''