file_path
%LOCALAPPDATA%\Microsoft\Windows\0\svchost.exe
discovered 2026-06-01
Epsilon Stealer persistence copy. Binary copied here and launched via HKCU Run key on reboot.
Epsilon Stealer persistence copy. Binary copied here and launched via HKCU Run key on reboot.
SafeDep keeps analytics anonymous and cookie-free until you opt in. Accepting helps us understand product usage and improve your experience. Privacy Policy
Choose what you share. You can change this anytime from the footer.