Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Registry Driver' = '%APPDATA%\regdrv.exe'
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{F1783S7N-7G21-03H6-E45Q-A7460166JMI6}] 'StubPath' = '%APPDATA%\regdrv.exe'
- '%APPDATA%\regdrv.exe'
- %APPDATA%\regdrv.exe
- 'localhost':3070