Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '8CwvfSRu72y' = '%ALLUSERSPROFILE%\Cz2srXIb5kMq1W\cChplnh3s4AAkXM.exe'
- %ALLUSERSPROFILE%\Cz2srXIb5kMq1W\cChplnh3s4AAkXM.exe
- %TEMP%\j1CY3oCeDev9k22.exe
- %ALLUSERSPROFILE%\Cz2srXIb5kMq1W\RCX1.tmp
- %ALLUSERSPROFILE%\Cz2srXIb5kMq1W\cChplnh3s4AAkXM.exe
- %TEMP%\j1CY3oCeDev9k22.exe
- %ALLUSERSPROFILE%\Cz2srXIb5kMq1W\cChplnh3s4AAkXM.exe
- ClassName: 'Indicator' WindowName: ''