Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'mos29jPQ5' = '%ALLUSERSPROFILE%\2UhK1xmV6Vrj2s\G7xb0EnE.exe'
- %ALLUSERSPROFILE%\2UhK1xmV6Vrj2s\G7xb0EnE.exe
- %TEMP%\F9CjT9ORMDPdtQvb.exe
- %ALLUSERSPROFILE%\2UhK1xmV6Vrj2s\RCX1.tmp
- %ALLUSERSPROFILE%\2UhK1xmV6Vrj2s\G7xb0EnE.exe
- %TEMP%\F9CjT9ORMDPdtQvb.exe
- %ALLUSERSPROFILE%\2UhK1xmV6Vrj2s\G7xb0EnE.exe
- ClassName: 'Indicator' WindowName: ''