Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'UemJIh1EbSY' = '%ALLUSERSPROFILE%\fxYa06PoAHQ\iE8hK51If16JB.exe'
- %ALLUSERSPROFILE%\fxYa06PoAHQ\iE8hK51If16JB.exe
- %TEMP%\BHMwT4pGkM9Krfb.exe
- %ALLUSERSPROFILE%\fxYa06PoAHQ\RCX1.tmp
- %ALLUSERSPROFILE%\fxYa06PoAHQ\iE8hK51If16JB.exe
- %TEMP%\BHMwT4pGkM9Krfb.exe
- %ALLUSERSPROFILE%\fxYa06PoAHQ\iE8hK51If16JB.exe
- ClassName: 'Indicator' WindowName: ''