Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ROYlE7tz7tF9t8a' = '%ALLUSERSPROFILE%\dq8tkDDSXEv7v2K\Lq5czuXxhXN8RV.exe'
- %ALLUSERSPROFILE%\dq8tkDDSXEv7v2K\Lq5czuXxhXN8RV.exe
- %TEMP%\NZo1LoEhE9d78OP.exe
- %ALLUSERSPROFILE%\dq8tkDDSXEv7v2K\RCX1.tmp
- %ALLUSERSPROFILE%\dq8tkDDSXEv7v2K\Lq5czuXxhXN8RV.exe
- %TEMP%\NZo1LoEhE9d78OP.exe
- %ALLUSERSPROFILE%\dq8tkDDSXEv7v2K\Lq5czuXxhXN8RV.exe
- ClassName: 'Indicator' WindowName: ''