1、生成的文件
%DOCUME~1%\ADMINI~1\LOCALS~1\Temp\BLACKSEEDER1.1
%SystemRoot%\Downloaded Program Files\0005486A.exe
%SystemRoot%\Downloaded Program Files\0005486A.DAT
2、添加启动项
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
"MSLOGON" = "C:\WINNT\Downloaded Program Files\0005486A.exe"