Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'FqjafnGE' = '%ALLUSERSPROFILE%\dNcPZWjqaTJY\5AYtA2gGYbevDDah.exe'
- %ALLUSERSPROFILE%\dNcPZWjqaTJY\5AYtA2gGYbevDDah.exe
- %TEMP%\5NbKZ2adQwX43XM.exe
- %ALLUSERSPROFILE%\dNcPZWjqaTJY\RCX1.tmp
- %ALLUSERSPROFILE%\dNcPZWjqaTJY\5AYtA2gGYbevDDah.exe
- %TEMP%\5NbKZ2adQwX43XM.exe
- %ALLUSERSPROFILE%\dNcPZWjqaTJY\5AYtA2gGYbevDDah.exe
- ClassName: 'Indicator' WindowName: ''