Technical Information
- [<HKLM>\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] '360se' = '<Full path to file>'
- User Account Control (UAC)
- %CommonProgramFiles(x86)%\rgdltecq\nhoifz.pif
- %WINDIR%\syswow64\1135000.dll
- DNS ASK c.####aihuabian.com