Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Ab5dCrXim7eKKA' = '%ALLUSERSPROFILE%\oOelw9ATdDT9b\vnHUGxgDa3o.exe'
- %ALLUSERSPROFILE%\oOelw9ATdDT9b\vnHUGxgDa3o.exe
- %TEMP%\pYZtP5JnZvgP.exe
- %ALLUSERSPROFILE%\oOelw9ATdDT9b\RCX1.tmp
- %ALLUSERSPROFILE%\oOelw9ATdDT9b\vnHUGxgDa3o.exe
- %TEMP%\pYZtP5JnZvgP.exe
- %ALLUSERSPROFILE%\oOelw9ATdDT9b\vnHUGxgDa3o.exe
- ClassName: 'Indicator' WindowName: ''