项:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
健值:tekkdv
指向数据:C:\WINDOWS\system32\hsiwij.exe
项:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
健值:hsiwij
指向数据:C:\WINDOWS\system32\severe.exe
项:HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\
健值:Shell
指向数据:Explorer.exe C:\WINDOWS\system32\drivers\conime.exe |
|