


The process DrvInst.exe:3056 makes changes in the file system.Ĭ:\Windows\inf\ (544 bytes) The process Vega.exe:2288 makes changes in the file system.Ĭ:\ProgramData\Microsoft\Intel\ (3780 bytes)Ĭ:\Users\"%CurrentUserName%"\AppData\Local\Temp\aut8F86.tmp (2513 bytes)Ĭ:\Users\"%CurrentUserName%"\AppData\Local\Temp\aut8F86.tmp (0 bytes) The Trojan deletes the following file(s):Ĭ:\ProgramData\Microsoft\TaskList\_tmp_rar_sfx_access_check_12748308 (0 bytes) The Trojan creates and/or writes to the following file(s):Ĭ:\ProgramData\Microsoft\TaskList\folders.cfg (1 bytes)Ĭ:\ProgramData\Microsoft\TaskList\whitelist.cfg (10 bytes)Ĭ:\ProgramData\Microsoft\TaskList\System.exe (13022 bytes) The process System.exe:3832 makes changes in the file system. The following mutexes were created/opened:
ZILLYA INTERNET SECURITY 2018 CODE
The Trojan injects its code into the following process(es): The Trojan creates the following process(es):
