Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '4o5eqroy7CDkr' = '%ALLUSERSPROFILE%\OcU4ImIOMA1ihPF\3SAwUZg2WZlV.exe'
- %ALLUSERSPROFILE%\OcU4ImIOMA1ihPF\3SAwUZg2WZlV.exe
- %TEMP%\Um3RyJ9y.exe
- %ALLUSERSPROFILE%\OcU4ImIOMA1ihPF\RCX1.tmp
- %ALLUSERSPROFILE%\OcU4ImIOMA1ihPF\3SAwUZg2WZlV.exe
- %TEMP%\Um3RyJ9y.exe
- %ALLUSERSPROFILE%\OcU4ImIOMA1ihPF\3SAwUZg2WZlV.exe
- ClassName: 'Indicator' WindowName: ''