Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'feQtbOVO6LC' = '%ALLUSERSPROFILE%\wDKAHpV55HlZz\5bNu9jXpDQB.exe'
- %ALLUSERSPROFILE%\wDKAHpV55HlZz\5bNu9jXpDQB.exe
- %TEMP%\9Astdy8WNld1dY.exe
- %ALLUSERSPROFILE%\wDKAHpV55HlZz\RCX1.tmp
- %ALLUSERSPROFILE%\wDKAHpV55HlZz\5bNu9jXpDQB.exe
- %ALLUSERSPROFILE%\wDKAHpV55HlZz\5bNu9jXpDQB.exe
- ClassName: 'Indicator' WindowName: ''