Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'D3Co79wDpge63as' = '%ALLUSERSPROFILE%\327bY1QSp4XlAU4\VrhOUBrh3ymO.exe'
- %ALLUSERSPROFILE%\327bY1QSp4XlAU4\VrhOUBrh3ymO.exe
- %TEMP%\teCTz2eoHvJreF9S.exe
- %ALLUSERSPROFILE%\327bY1QSp4XlAU4\RCX1.tmp
- %ALLUSERSPROFILE%\327bY1QSp4XlAU4\VrhOUBrh3ymO.exe
- %TEMP%\teCTz2eoHvJreF9S.exe
- %ALLUSERSPROFILE%\327bY1QSp4XlAU4\VrhOUBrh3ymO.exe
- ClassName: 'Indicator' WindowName: ''