Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ABC' = '%TEMP%\0123456789\ABC.exe'
- %TEMP%\0123456789\ABC.exe
- 'ec############182.us-west-2.compute.amazonaws.com':80
- ec############182.us-west-2.compute.amazonaws.com/submit
- DNS ASK ec############182.us-west-2.compute.amazonaws.com
- ClassName: 'Indicator' WindowName: '(null)'