Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'J9faF8QrI6LO' = '%ALLUSERSPROFILE%\pckfWQ5mGo\BLMDWpXohsd9Js.exe'
- %ALLUSERSPROFILE%\pckfWQ5mGo\BLMDWpXohsd9Js.exe
- %TEMP%\9gj0FF2ZNRBBzn.exe
- %ALLUSERSPROFILE%\pckfWQ5mGo\RCX1.tmp
- %ALLUSERSPROFILE%\pckfWQ5mGo\BLMDWpXohsd9Js.exe
- %TEMP%\9gj0FF2ZNRBBzn.exe
- %ALLUSERSPROFILE%\pckfWQ5mGo\BLMDWpXohsd9Js.exe
- ClassName: 'Indicator' WindowName: ''