Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'TGXIOTK49nqG' = '%ALLUSERSPROFILE%\UbAvNB4XogkrepEv\Ge58vknG5.exe'
- %ALLUSERSPROFILE%\UbAvNB4XogkrepEv\Ge58vknG5.exe
- %TEMP%\S8UcmdQa.exe
- %ALLUSERSPROFILE%\UbAvNB4XogkrepEv\RCX1.tmp
- %ALLUSERSPROFILE%\UbAvNB4XogkrepEv\Ge58vknG5.exe
- %ALLUSERSPROFILE%\UbAvNB4XogkrepEv\Ge58vknG5.exe
- ClassName: 'Indicator' WindowName: ''