Техническая информация
- [<HKLM>\Software\Classes\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\SHELLEXECUTEHOOKS] '' = ''
- %WINDIR%\syswow64\cedafb.dll
- %WINDIR%\syswow64\tf0
- %WINDIR%\syswow64\cedafb.dll.log
- %WINDIR%\syswow64\tf0
- %WINDIR%\syswow64\tf0