Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Program' = '<SYSTEM32>\Program.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '360se' = '<SYSTEM32>\360se.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SVCHOST' = '<SYSTEM32>\nie.exe'
- %TEMP%\~DFAAA6.tmp