Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '1VgqTwFL' = '%ALLUSERSPROFILE%\Jg7h7DUELJ8r\38Y5mCune7jBjg.exe'
- %ALLUSERSPROFILE%\Jg7h7DUELJ8r\38Y5mCune7jBjg.exe
- %TEMP%\dWOc0zh1OFWR9yE.exe
- %ALLUSERSPROFILE%\Jg7h7DUELJ8r\RCX1.tmp
- %ALLUSERSPROFILE%\Jg7h7DUELJ8r\38Y5mCune7jBjg.exe
- %TEMP%\dWOc0zh1OFWR9yE.exe
- %ALLUSERSPROFILE%\Jg7h7DUELJ8r\38Y5mCune7jBjg.exe
- ClassName: 'Indicator' WindowName: ''