Technical Information
- [<HKCU>\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN] 'iexplorer' = '<SYSTEM32>\iexplorerr32.exe'
- [<HKCU>\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN] 'explorer64bt' = '<SYSTEM32>\hostrun32.exe'
- [<HKCU>\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN] 'hotsendd' = '<SYSTEM32>\rdpadd1.exe'
- User Account Control (UAC)
- Windows Security Center