Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '360se' = '<SYSTEM32>\360se.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Program' = '<SYSTEM32>\Program.exe'
- [<HKLM>\SOFTWARE\Classes\CLSID\{86AEFBE8-763F-0647-899C-A93278890125}\Shell\Open\Command] '' = '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://www.n989.com/'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SVCHOST' = '%WINDIR%\SVCHOST.exe'
- %TEMP%\~DFC336.tmp