Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'N4e3Y8fKx' = '%ALLUSERSPROFILE%\s3yPURMDG\vKuI3o8OGwSxdmRO.exe'
- %ALLUSERSPROFILE%\s3yPURMDG\vKuI3o8OGwSxdmRO.exe
- %TEMP%\sFThHnyyPk6USqlM.exe
- %ALLUSERSPROFILE%\s3yPURMDG\RCX1.tmp
- %ALLUSERSPROFILE%\s3yPURMDG\vKuI3o8OGwSxdmRO.exe
- %ALLUSERSPROFILE%\s3yPURMDG\vKuI3o8OGwSxdmRO.exe
- ClassName: 'Indicator' WindowName: ''