Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'HG6JLqY6Wstz8' = '%ALLUSERSPROFILE%\f8Mr0fmA\7oOxy89JGOb.exe'
- %ALLUSERSPROFILE%\f8Mr0fmA\7oOxy89JGOb.exe
- %TEMP%\El9N3i75SrqmAcm.exe
- %ALLUSERSPROFILE%\f8Mr0fmA\RCX1.tmp
- %ALLUSERSPROFILE%\f8Mr0fmA\7oOxy89JGOb.exe
- %TEMP%\El9N3i75SrqmAcm.exe
- %ALLUSERSPROFILE%\f8Mr0fmA\7oOxy89JGOb.exe
- ClassName: 'Indicator' WindowName: ''