Technical Information
- [HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN] 'iexplorer' = '<SYSTEM32>\iexplorerr32.exe'
- [HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN] 'explorer64bt' = '<SYSTEM32>\svchostrun32.exe'
- [HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN] 'hotsendd' = '<SYSTEM32>\wordpadd2.exe'
- User Account Control (UAC)
- Windows Security Center