Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'jj6MU3KZwDcm' = '%ALLUSERSPROFILE%\bB9syEcAoK5dU02\MZCEA7Ua9r9OWi.exe'
- %ALLUSERSPROFILE%\bB9syEcAoK5dU02\MZCEA7Ua9r9OWi.exe
- %TEMP%\Z7MlYqfADfED.exe
- %ALLUSERSPROFILE%\bB9syEcAoK5dU02\RCX1.tmp
- %ALLUSERSPROFILE%\bB9syEcAoK5dU02\MZCEA7Ua9r9OWi.exe
- %TEMP%\Z7MlYqfADfED.exe
- %ALLUSERSPROFILE%\bB9syEcAoK5dU02\MZCEA7Ua9r9OWi.exe
- ClassName: 'Indicator' WindowName: ''