Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'gRFWWx5e2' = '%ALLUSERSPROFILE%\FbFDor1zH8yo\TLYmq4SfxkAx8.exe'
- %ALLUSERSPROFILE%\FbFDor1zH8yo\TLYmq4SfxkAx8.exe
- %TEMP%\wlr840rcXvE5.exe
- %ALLUSERSPROFILE%\FbFDor1zH8yo\RCX1.tmp
- %ALLUSERSPROFILE%\FbFDor1zH8yo\TLYmq4SfxkAx8.exe
- %TEMP%\wlr840rcXvE5.exe
- %ALLUSERSPROFILE%\FbFDor1zH8yo\TLYmq4SfxkAx8.exe
- ClassName: 'Indicator' WindowName: ''