Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'sDD9Yjlu' = '%ALLUSERSPROFILE%\HFAiS5ZzI\0IvCLcNc1nM61.exe'
- %ALLUSERSPROFILE%\HFAiS5ZzI\0IvCLcNc1nM61.exe
- %TEMP%\nJgRkrNQMy8Vt.exe
- %ALLUSERSPROFILE%\HFAiS5ZzI\RCX1.tmp
- %ALLUSERSPROFILE%\HFAiS5ZzI\0IvCLcNc1nM61.exe
- %TEMP%\nJgRkrNQMy8Vt.exe
- %ALLUSERSPROFILE%\HFAiS5ZzI\0IvCLcNc1nM61.exe
- ClassName: 'Indicator' WindowName: ''