Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '4CyhaQXZ' = '%ALLUSERSPROFILE%\h1d7MuP0tYqo\FeTnYVoAKOjklHYq.exe'
- %ALLUSERSPROFILE%\h1d7MuP0tYqo\FeTnYVoAKOjklHYq.exe
- %TEMP%\2J0b5wR30A19Cc.exe
- %ALLUSERSPROFILE%\h1d7MuP0tYqo\RCX1.tmp
- %ALLUSERSPROFILE%\h1d7MuP0tYqo\FeTnYVoAKOjklHYq.exe
- %TEMP%\2J0b5wR30A19Cc.exe
- %ALLUSERSPROFILE%\h1d7MuP0tYqo\FeTnYVoAKOjklHYq.exe
- ClassName: 'Indicator' WindowName: ''