Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'fEDmAgFDg' = '%ALLUSERSPROFILE%\Xf7ApQGY0fC\Zqe8j5KW7j94kGN.exe'
- %ALLUSERSPROFILE%\Xf7ApQGY0fC\Zqe8j5KW7j94kGN.exe
- %TEMP%\69BWB4nCTN.exe
- %ALLUSERSPROFILE%\Xf7ApQGY0fC\RCX1.tmp
- %ALLUSERSPROFILE%\Xf7ApQGY0fC\Zqe8j5KW7j94kGN.exe
- %TEMP%\69BWB4nCTN.exe
- %ALLUSERSPROFILE%\Xf7ApQGY0fC\Zqe8j5KW7j94kGN.exe
- ClassName: 'Indicator' WindowName: ''